-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - -------------------------------------------------------------------------- Trustix Secure Linux Bugfix Advisory #2007-0011 Package names: adodb, base, dazuko, quota, oinkmaster, snort Summary: Various bug fixes Date: 2007-03-30 Affected versions: Trustix Secure Linux 2.2 Trustix Secure Linux 3.0 Trustix Secure Linux 3.0.5 - -------------------------------------------------------------------------- Package description: adodb PHP's database access functions are not standardised. This creates a need for a database class library to hide the differences between the different databases (encapsulate the differences) so we can easily switch databases. ADOdb is a database abstraction library for PHP. base BASE is the Basic Analysis and Security Engine. It is based on the code from the Analysis Console for Intrusion Databases (ACID) project. This application provides a web front-end to query and analyze the alerts coming from a SNORT IDS system. dazuko Dazuko aims to be a cross-platform device driver that allows applications to control file access on a system. By installing the driver, your system will be able to support file access control applications that are based on Dazuko. quota The quota package contains system administration tools for monitoring and limiting users' and or groups' disk usage, per filesystem. oinkmaster Oinkmaster is simple Perl script released under the BSD license that helps you keep your Snort rules current with little or no user interaction. It has quite a few useful features regarding rules management, such as ability to enable, disable and modify specified rules after each update. It will tell you the exact changes from your previous rules, so you have total control of what's going on. snort Snort is an open source network intrusion prevention and detection system utilizing a rule-driven language, which combines the benefits of signature, protocol and anomaly based inspection methods. Problem description: adodb < TSL 2.2 > - Initial release. base < TSL 2.2 > - Initial release. dazuko < TSL 2.2 > - Initial release. quota < TSL 3.0.5 > < TSL 3.0 > - New Upstream. - Fixes Bug #2169. oinkmaster < TSL 2.2 > - Initial release. snort < TSL 2.2 > - Initial release. Action: We recommend that all systems with this package installed be upgraded. Please note that if you do not need the functionality provided by this package, you may want to remove it from your system. Location: All Trustix Secure Linux updates are available from About Trustix Secure Linux: Trustix Secure Linux is a small Linux distribution for servers. With focus on security and stability, the system is painlessly kept safe and up to date from day one using swup, the automated software updater. Automatic updates: Users of the SWUP tool can enjoy having updates automatically installed using 'swup --upgrade'. Questions? Check out our mailing lists: Verification: This advisory along with all Trustix packages are signed with the TSL sign key. This key is available from: The advisory itself is available from the errata pages at , and or directly at MD5sums of the packages: - -------------------------------------------------------------------------- f8c4a9a641c18d793751d5cf6d0e3897 3.0.5/rpms/quota-3.14-1tr.i586.rpm 0813fd1be4f85690cd12a385d0d23f9c 3.0/rpms/quota-3.14-1tr.i586.rpm 7e839112d594b405e86beb32d1871fde 2.2/rpms/adodb-494-1tr.i586.rpm e92ce2460617f9cdfbcf7c820f889c1d 2.2/rpms/base-1.3.5-1tr.i586.rpm b544e773da4c1032a4aff77766ffb66c 2.2/rpms/dazuko-2.3.2-1tr.i586.rpm d7d914b1fa8f42a3d5374997a3198fae 2.2/rpms/dazuko-module-2.3.2-1tr.i586.rpm 0fca8ced92d6cb4b3c93a6bb5cc59a5d 2.2/rpms/dazuko-module-smp-2.3.2-1tr.i586.rpm e3beb0e9c2b85a947638f07eb2139901 2.2/rpms/oinkmaster-2.0-1tr.i586.rpm d68001bc1dae692d0ef22642afc615c2 2.2/rpms/snort-2.6.1.3-1tr.i586.rpm bc75e70848d224662809019eba810e20 2.2/rpms/snort-mysql-2.6.1.3-1tr.i586.rpm 1bdcad9c03cb17655881a3a968243493 2.2/rpms/snort-postgresql-2.6.1.3-1tr.i586.rpm - -------------------------------------------------------------------------- Trustix Security Team -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.6 (GNU/Linux) iD8DBQFGDQ2ei8CEzsK9IksRAt/0AKC63hxjWOC19xRwelePYh05AH2YLwCfejis Ln2sIVqGv43yxnYW2xXNerQ= =PrnQ -----END PGP SIGNATURE-----