靓仔
级别:开国大老威望 :1 经验:0 货币:8465 体力: 来源:127.0.0.1 总发帖数:2556 注册日期:2002-04-24
查看 邮件 主页 QQ 消息 引用 复制 下载 Red Hat 安全公告
RHSA-2002:139-10 (Linux,补丁) Red Hat 安全公告 RHSA-2002:139-10
(Linux,补丁) 涉及程序: glibc及glibc-compat模块 描述:
Red Hat 安全公告: glibc及glibc-compat模块升级公告 详细: glibc
是为系统上多个程序所用的一个标准函数库。 在 glibc 函数库中的一个 DNS
用来解析网络名和网络地址的解析器被发现存在一个缓冲溢出缺陷(CAN-2002-0684)。glibc 2.2.5
及更早版本都受此影响。如果系统在 /etc/nsswitch.conf
文件中的"networks"数据库带有"dns"设置,将会受此影响,但是 Hat Linux 缺省设置是将"networks"
设置为"files" ,所以不受此影响。 存在的第二个问题是 glibc 2.0.x 的为应用程序之间的实现提供了兼容性
glibc-compat 数据包的一个bug(CAN-2002-0651),不过是仅仅使得Red Hat Linux 5.0, 5.1,
和 5.2 的应用程序的实现受到影响。 受影响系统: Red Hat Linux 6.2 - alpha,
i386, i686, sparc, sparcv9 Red Hat Linux 7.0 - alpha,
alphaev6, i386, i686 Red Hat Linux 7.1 - alpha, alphaev6,
i386, i686, ia64 Red Hat Linux 7.2 - i386, i686, ia64
Red Hat Linux 7.3 - i386, i686 攻击方法:
暂无有效攻击代码 解决方案: 安装更新软件包: rpm -Fvh [filenames]
[filenames] 代表你要用来更新的 RPMs。只有目前有安装的 RPMs 才可更新,那些没有安装过但是包含在
filenames 内的 RPMs
将不会被更新。注意,如果你目前所在目录下只包含想要的RPMs,你也可以使用万用字符(*.rpm)请注意,你也可以由Red Hat
Network 取得 更新,有各种更新的方式,要使用 Red Hat Network,可由以下指令激活 Red Hat
Update Agent: up2date 这将激活一个互动的程序将您系统上适当的RPMs升级。
在取得更新之前,确定所有之前所有跟你系统相关的错误修正都已取得要对你特定系统架构进行更新: rpm
-Fvh [filenames] [filenames] 代表你要用来更新的 RPMs。只有目前有安装的 RPMs
才可更新,那些没有安装过但是包含在 filenames 内的 RPMs
将不会被更新。注意,如果你目前所在目录下只包含想要的RPMs,你也可以使用万用字符(*.rpm)请注意,你也可以由Red Hat
Network 取得 更新,有各种更新的方式,要使用 Red Hat Network,可由以下指令激活 Red Hat
Update Agent: up2date 这将激活一个互动的程序将您系统上适当的RPMs升级。
取得这些更新后,需要重新激活 active server。 RPMs 需求: Red
Hat Linux 6.2: SRPMS:
ftp://updates.redhat.com/6.2/en/os/SRPMS/glibc-2.1.3-24.src.rpm
; alpha:
ftp://updates.redhat.com/6.2/en/os/alpha/glibc-2.1.3-24.alpha.rpm
;
ftp://updates.redhat.com/6.2/en/os/alpha/glibc-devel-2.1.3-24.alpha.rpm
;
ftp://updates.redhat.com/6.2/en/os/alpha/glibc-profile-2.1.3-24.alpha.rpm
;
ftp://updates.redhat.com/6.2/en/os/alpha/nscd-2.1.3-24.alpha.rpm
; i386:
ftp://updates.redhat.com/6.2/en/os/i386/glibc-2.1.3-24.i386.rpm
;
ftp://updates.redhat.com/6.2/en/os/i386/glibc-devel-2.1.3-24.i386.rpm
;
ftp://updates.redhat.com/6.2/en/os/i386/glibc-profile-2.1.3-24.i386.rpm
; ftp://updates.redhat.com/6.2/en/os/i386/nscd-2.1.3-24.i386.rpm
; sparc:
ftp://updates.redhat.com/6.2/en/os/sparc/glibc-2.1.3-24.sparc.rpm
;
ftp://updates.redhat.com/6.2/en/os/sparc/glibc-devel-2.1.3-24.sparc.rpm
;
ftp://updates.redhat.com/6.2/en/os/sparc/glibc-profile-2.1.3-24.sparc.rpm
;
ftp://updates.redhat.com/6.2/en/os/sparc/nscd-2.1.3-24.sparc.rpm
; sparcv9:
ftp://updates.redhat.com/6.2/en/os/sparcv9/glibc-2.1.3-24.sparcv9.rpm
; Red Hat Linux 7.0: SRPMS:
ftp://updates.redhat.com/7.0/en/os/SRPMS/glibc-2.2.4-18.7.0.4.src.rpm
; alpha:
ftp://updates.redhat.com/7.0/en/os/alpha/glibc-2.2.4-18.7.0.4.alpha.rpm
;
ftp://updates.redhat.com/7.0/en/os/alpha/glibc-common-2.2.4-18.7.0.4.alpha.=
; rpm
ftp://updates.redhat.com/7.0/en/os/alpha/glibc-devel-2.2.4-18.7.0.4.alpha.r=
; pm
ftp://updates.redhat.com/7.0/en/os/alpha/glibc-profile-2.2.4-18.7.0.4.alpha=
; .rpm
ftp://updates.redhat.com/7.0/en/os/alpha/nscd-2.2.4-18.7.0.4.alpha.rpm
; alphaev6:
ftp://updates.redhat.com/7.0/en/os/alphaev6/glibc-2.2.4-18.7.0.4.alphaev6.r=
; pm i386:
ftp://updates.redhat.com/7.0/en/os/i386/glibc-2.2.4-18.7.0.4.i386.rpm
;
ftp://updates.redhat.com/7.0/en/os/i386/glibc-common-2.2.4-18.7.0.4.i386.rpm
;
ftp://updates.redhat.com/7.0/en/os/i386/glibc-devel-2.2.4-18.7.0.4.i386.rpm
;
ftp://updates.redhat.com/7.0/en/os/i386/glibc-profile-2.2.4-18.7.0.4.i386.r=
; pm
ftp://updates.redhat.com/7.0/en/os/i386/nscd-2.2.4-18.7.0.4.i386.rpm
; i686:
ftp://updates.redhat.com/7.0/en/os/i686/glibc-2.2.4-18.7.0.4.i686.rpm
; Red Hat Linux 7.1: SRPMS:
ftp://updates.redhat.com/7.1/en/os/SRPMS/glibc-2.2.4-27.src.rpm
; alpha:
ftp://updates.redhat.com/7.1/en/os/alpha/glibc-2.2.4-27.alpha.rpm
;
ftp://updates.redhat.com/7.1/en/os/alpha/glibc-common-2.2.4-27.alpha.rpm
;
ftp://updates.redhat.com/7.1/en/os/alpha/glibc-devel-2.2.4-27.alpha.rpm
;
ftp://updates.redhat.com/7.1/en/os/alpha/glibc-profile-2.2.4-27.alpha.rpm
;
ftp://updates.redhat.com/7.1/en/os/alpha/nscd-2.2.4-27.alpha.rpm
; alphaev6:
ftp://updates.redhat.com/7.1/en/os/alphaev6/glibc-2.2.4-27.alphaev6.rpm
; i386:
ftp://updates.redhat.com/7.1/en/os/i386/glibc-2.2.4-27.i386.rpm
;
ftp://updates.redhat.com/7.1/en/os/i386/glibc-common-2.2.4-27.i386.rpm
;
ftp://updates.redhat.com/7.1/en/os/i386/glibc-devel-2.2.4-27.i386.rpm
;
ftp://updates.redhat.com/7.1/en/os/i386/glibc-profile-2.2.4-27.i386.rpm
; ftp://updates.redhat.com/7.1/en/os/i386/nscd-2.2.4-27.i386.rpm
; i686:
ftp://updates.redhat.com/7.1/en/os/i686/glibc-2.2.4-27.i686.rpm
; ia64:
ftp://updates.redhat.com/7.1/en/os/ia64/glibc-2.2.4-27.ia64.rpm
;
ftp://updates.redhat.com/7.1/en/os/ia64/glibc-common-2.2.4-27.ia64.rpm
;
ftp://updates.redhat.com/7.1/en/os/ia64/glibc-devel-2.2.4-27.ia64.rpm
;
ftp://updates.redhat.com/7.1/en/os/ia64/glibc-profile-2.2.4-27.ia64.rpm
; ftp://updates.redhat.com/7.1/en/os/ia64/nscd-2.2.4-27.ia64.rpm
; Red Hat Linux 7.2: SRPMS:
ftp://updates.redhat.com/7.2/en/os/SRPMS/glibc-2.2.4-27.src.rpm
; i386:
ftp://updates.redhat.com/7.2/en/os/i386/glibc-2.2.4-27.i386.rpm
;
ftp://updates.redhat.com/7.2/en/os/i386/glibc-common-2.2.4-27.i386.rpm
;
ftp://updates.redhat.com/7.2/en/os/i386/glibc-devel-2.2.4-27.i386.rpm
;
ftp://updates.redhat.com/7.2/en/os/i386/glibc-profile-2.2.4-27.i386.rpm
; ftp://updates.redhat.com/7.2/en/os/i386/nscd-2.2.4-27.i386.rpm
; i686:
ftp://updates.redhat.com/7.2/en/os/i686/glibc-2.2.4-27.i686.rpm
; ia64:
ftp://updates.redhat.com/7.2/en/os/ia64/glibc-2.2.4-27.ia64.rpm
;
ftp://updates.redhat.com/7.2/en/os/ia64/glibc-common-2.2.4-27.ia64.rpm
;
ftp://updates.redhat.com/7.2/en/os/ia64/glibc-devel-2.2.4-27.ia64.rpm
;
ftp://updates.redhat.com/7.2/en/os/ia64/glibc-profile-2.2.4-27.ia64.rpm
; ftp://updates.redhat.com/7.2/en/os/ia64/nscd-2.2.4-27.ia64.rpm
; Red Hat Linux 7.3: SRPMS:
ftp://updates.redhat.com/7.3/en/os/SRPMS/glibc-2.2.5-37.src.rpm
; i386:
ftp://updates.redhat.com/7.3/en/os/i386/glibc-2.2.5-37.i386.rpm
;
ftp://updates.redhat.com/7.3/en/os/i386/glibc-common-2.2.5-37.i386.rpm
;
ftp://updates.redhat.com/7.3/en/os/i386/glibc-debug-2.2.5-37.i386.rpm
;
ftp://updates.redhat.com/7.3/en/os/i386/glibc-debug-static-2.2.5-37.i386.rpm
;
ftp://updates.redhat.com/7.3/en/os/i386/glibc-devel-2.2.5-37.i386.rpm
;
ftp://updates.redhat.com/7.3/en/os/i386/glibc-profile-2.2.5-37.i386.rpm
;
ftp://updates.redhat.com/7.3/en/os/i386/glibc-utils-2.2.5-37.i386.rpm
; ftp://updates.redhat.com/7.3/en/os/i386/nscd-2.2.5-37.i386.rpm
; i686:
ftp://updates.redhat.com/7.3/en/os/i686/glibc-2.2.5-37.i686.rpm
;
ftp://updates.redhat.com/7.3/en/os/i686/glibc-debug-2.2.5-37.i686.rpm
; 验证:: MD5 sum Package Name
--------------------------------------------------------------------------
9a3e1bff97d347d5d0eaa649285a29e7
6.2/en/os/SRPMS/glibc-2.1.3-24.src.rpm
2e3e177fe6e65d26cdbb96588a9a5d7c
6.2/en/os/alpha/glibc-2.1.3-24.alpha.rpm
eeaabcca9198c433f2e5f4a3c37e9f94
6.2/en/os/alpha/glibc-devel-2.1.3-24.alpha.rpm
e471e5eaddb1096c9e0b6b43d2285e6b
6.2/en/os/alpha/glibc-profile-2.1.3-24.alpha.rpm
0d3567e1ad976fb9968f066d76c1713c
6.2/en/os/alpha/nscd-2.1.3-24.alpha.rpm
55c893993fd3101ce3c3847b03a3fbbe
6.2/en/os/i386/glibc-2.1.3-24.i386.rpm
f9484a4634fce16bed9cdaf098cf861f
6.2/en/os/i386/glibc-devel-2.1.3-24.i386.rpm
aed4c48fbc415b8aefe2c20933bbf6b8
6.2/en/os/i386/glibc-profile-2.1.3-24.i386.rpm
07abd4e9d2181f8948af2fe76784b554
6.2/en/os/i386/nscd-2.1.3-24.i386.rpm
eb0c870314704ed3eb95961f4060cc7c
6.2/en/os/sparc/glibc-2.1.3-24.sparc.rpm
01c54853ad6a5083bb23eda3d43b22a5
6.2/en/os/sparc/glibc-devel-2.1.3-24.sparc.rpm
e39a6b9420f251d11cad05032bf0275b
6.2/en/os/sparc/glibc-profile-2.1.3-24.sparc.rpm
decd8617187517c68d7fa0d0438adf12
6.2/en/os/sparc/nscd-2.1.3-24.sparc.rpm
f60261b7b32f5a627267e06306af56f5
6.2/en/os/sparcv9/glibc-2.1.3-24.sparcv9.rpm
5b64505518a0dcc4d6b023f0c7af3960
7.0/en/os/SRPMS/glibc-2.2.4-18.7.0.4.src.rpm
10d795dcdfc8756f03219f116182d702
7.0/en/os/alpha/glibc-2.2.4-18.7.0.4.alpha.rpm
90714b1817aa083dec2e57477043caf6
7.0/en/os/alpha/glibc-common-2.2.4-18.7.0.4.alpha.rpm
0b61592283a9640030c127a5cd124336
7.0/en/os/alpha/glibc-devel-2.2.4-18.7.0.4.alpha.rpm
6e5da4f63088606f19777233d68ab296
7.0/en/os/alpha/glibc-profile-2.2.4-18.7.0.4.alpha.rpm
739a998a00fc67c4e6a5170e55d17cb5
7.0/en/os/alpha/nscd-2.2.4-18.7.0.4.alpha.rpm
39dc3b3b9a963a3c7348a73c0a2ff7f8
7.0/en/os/alphaev6/glibc-2.2.4-18.7.0.4.alphaev6.rpm
321393b42a53d31f69b6eaffc9f2102a
7.0/en/os/i386/glibc-2.2.4-18.7.0.4.i386.rpm
50afc752fff2c878011119e1b37e8571
7.0/en/os/i386/glibc-common-2.2.4-18.7.0.4.i386.rpm
78ab2c22d7b8612016a89907dcbd0d29
7.0/en/os/i386/glibc-devel-2.2.4-18.7.0.4.i386.rpm
87d4668630cfd074fefd150475f1e5e5
7.0/en/os/i386/glibc-profile-2.2.4-18.7.0.4.i386.rpm
d513dc5efa2d875866ffbdd244a92a67
7.0/en/os/i386/nscd-2.2.4-18.7.0.4.i386.rpm
e35c630998bd879e88f1ab9bb9b74d72
7.0/en/os/i686/glibc-2.2.4-18.7.0.4.i686.rpm
8b5c7cb9220631e68050637383b9c29d
7.1/en/os/SRPMS/glibc-2.2.4-27.src.rpm
d70b222f0e4a3ab20968857c68b683ce
7.1/en/os/alpha/glibc-2.2.4-27.alpha.rpm
8bb579b8a232b90550291904d4078449
7.1/en/os/alpha/glibc-common-2.2.4-27.alpha.rpm
5923ddfbc622ab02ef63a08607c32b00
7.1/en/os/alpha/glibc-devel-2.2.4-27.alpha.rpm
a2701ab8e56f3ed77d62d7de84dd7ce4
7.1/en/os/alpha/glibc-profile-2.2.4-27.alpha.rpm
01be31be9c13facb3f88b3717c0e3319
7.1/en/os/alpha/nscd-2.2.4-27.alpha.rpm
de454e55e66522bd40739370092422ba
7.1/en/os/alphaev6/glibc-2.2.4-27.alphaev6.rpm
eeafe747b480543489d3d91c496af3bc
7.1/en/os/i386/glibc-2.2.4-27.i386.rpm
b75ad5323c294daf1dc53c8bd74bdae2
7.1/en/os/i386/glibc-common-2.2.4-27.i386.rpm
75ddc348fa944e0df55bb8351a0988e3
7.1/en/os/i386/glibc-devel-2.2.4-27.i386.rpm
915abdc16175ec8ee07adbaf406b563d
7.1/en/os/i386/glibc-profile-2.2.4-27.i386.rpm
8c4b8d913b56910d1eb043cd8fb7dadf
7.1/en/os/i386/nscd-2.2.4-27.i386.rpm
8c33fbd6a3a0e40c22e8892a624bd398
7.1/en/os/i686/glibc-2.2.4-27.i686.rpm
c5a61c4a96e0c89cb94c5755b9d640df
7.1/en/os/ia64/glibc-2.2.4-27.ia64.rpm
2753a1d09ef0294dd611283a6dc01279
7.1/en/os/ia64/glibc-common-2.2.4-27.ia64.rpm
175abe8553824db00c84fd7ba23150d6
7.1/en/os/ia64/glibc-devel-2.2.4-27.ia64.rpm
f3774fb87287ad7cd9e083d062cda348
7.1/en/os/ia64/glibc-profile-2.2.4-27.ia64.rpm
7e7c12abfea5507a0a5cc8744072c747
7.1/en/os/ia64/nscd-2.2.4-27.ia64.rpm
8b5c7cb9220631e68050637383b9c29d
7.2/en/os/SRPMS/glibc-2.2.4-27.src.rpm
eeafe747b480543489d3d91c496af3bc
7.2/en/os/i386/glibc-2.2.4-27.i386.rpm
b75ad5323c294daf1dc53c8bd74bdae2
7.2/en/os/i386/glibc-common-2.2.4-27.i386.rpm
75ddc348fa944e0df55bb8351a0988e3
7.2/en/os/i386/glibc-devel-2.2.4-27.i386.rpm
915abdc16175ec8ee07adbaf406b563d
7.2/en/os/i386/glibc-profile-2.2.4-27.i386.rpm
8c4b8d913b56910d1eb043cd8fb7dadf
7.2/en/os/i386/nscd-2.2.4-27.i386.rpm
8c33fbd6a3a0e40c22e8892a624bd398
7.2/en/os/i686/glibc-2.2.4-27.i686.rpm
c5a61c4a96e0c89cb94c5755b9d640df
7.2/en/os/ia64/glibc-2.2.4-27.ia64.rpm
2753a1d09ef0294dd611283a6dc01279
7.2/en/os/ia64/glibc-common-2.2.4-27.ia64.rpm
175abe8553824db00c84fd7ba23150d6
7.2/en/os/ia64/glibc-devel-2.2.4-27.ia64.rpm
f3774fb87287ad7cd9e083d062cda348
7.2/en/os/ia64/glibc-profile-2.2.4-27.ia64.rpm
7e7c12abfea5507a0a5cc8744072c747
7.2/en/os/ia64/nscd-2.2.4-27.ia64.rpm
9c2d0f4717f4931ff3d233ef44cfa5b1
7.3/en/os/SRPMS/glibc-2.2.5-37.src.rpm
b3e14c27d1f337107662cffe8111ffb4
7.3/en/os/i386/glibc-2.2.5-37.i386.rpm
318a0e614f31b4ea63ea122ffc9b0abc
7.3/en/os/i386/glibc-common-2.2.5-37.i386.rpm
c11c152ffb7b98e3ada86ef89b21060b
7.3/en/os/i386/glibc-debug-2.2.5-37.i386.rpm
8f7403eb789e624a91a5728c752ffb7e
7.3/en/os/i386/glibc-debug-static-2.2.5-37.i386.rpm
1364e6e500af53789f94a845d7201745
7.3/en/os/i386/glibc-devel-2.2.5-37.i386.rpm
977f0364e31ef240375d5dc3abce27c9
7.3/en/os/i386/glibc-profile-2.2.5-37.i386.rpm
702c9e2f376d9d10829961b29d1e3fd3
7.3/en/os/i386/glibc-utils-2.2.5-37.i386.rpm
aa3e2f88f60ca8e8566d45a8e8bf6218
7.3/en/os/i386/nscd-2.2.5-37.i386.rpm
854b21baba0b4b32963bc322fe59ffc2
7.3/en/os/i686/glibc-2.2.5-37.i686.rpm
0d488fae1d4248bbd1727c402143d5f6
7.3/en/os/i686/glibc-debug-2.2.5-37.i686.rpm 这些套件基于安全理由,均由
Red Hat 公司使用 GPG 签章,可至下列网址取得key:
http://www.redhat.com/about/contact.html ;
你可以用以下指令来进行验证: rpm --checksig <filename>
如果你只想验证软件没有被更改或者损坏的话,可用以下指令检查md5sum: rpm --checksig
--nogpg <filename> 附加信息: CVE Names: CAN-2002-0684
CAN-2002-0651 相关站点:
http://msgs.securepoint.com/cgi-bin/get/bugtraq0207/212.html ;