Re: SuSE Security Announcement: wmaker/WindowMaker
Hello! It is recommended to update wmaker to SuSE-7.0 ftp://ftp.suse.com/pub/suse/i386/update/7.0/xwm1/wmaker-0.62.1-42.i386.rpm but it also exists a Version wmaker-0.62.1-68. Is this Version also affected or is there nor need to "downgrade"? Greetings, Jan Suchanek
On Fri, 21 Sep 2001, Mail2News User wrote:
It is recommended to update wmaker to
SuSE-7.0
ftp://ftp.suse.com/pub/suse/i386/update/7.0/xwm1/wmaker-0.62.1-42.i386.rpm
but it also exists a Version wmaker-0.62.1-68. Is this Version also affected or is there nor need to "downgrade"?
I don't see a wmaker-0.62.1-68.rpm in this directory. Make sure the RPM changelog includes the following change: * Mon Sep 17 2001 - nadvornik@suse.cz - fixed a buffer overflow caused by very long window titles Bye, LenZ -- ------------------------------------------------------------------ Lenz Grimmer SuSE GmbH mailto:grimmer@suse.de Schanzaeckerstr. 10 http://www.suse.de/~grimmer/ 90443 Nuernberg, Germany Shouldn't you be doing something useful?
I don't see a wmaker-0.62.1-68.rpm in this directory. Make sure the RPM changelog includes the following change:
It's in ftp.suse.com/pub/suse/i386/7.0/suse/xwm1/wmaker.rpm. This happened before with another package. We will trigger the package for rebuild again, with the number at least at -69. In the meanwhile, please use the --oldpackage switch: rpm --oldpackage -Uvh wmaker-0.62.1-42.i386.rpm The version in the update directory is the correct one. We apologize.
* Mon Sep 17 2001 - nadvornik@suse.cz
- fixed a buffer overflow caused by very long window titles
Visible through rpm -qp --changelog wmaker-0.62.1-42.i386.rpm | head -7 Roman. -- - - | Roman Drahtmüller <draht@suse.de> // "You don't need eyes to see, | SuSE GmbH - Security Phone: // you need vision!" | Nürnberg, Germany +49-911-740530 // Maxi Jazz, Faithless | - -
On Fri, 21 Sep 2001, Mail2News User wrote:
Hello!
Hello.
ftp://ftp.suse.com/pub/suse/i386/update/7.0/xwm1/wmaker-0.62.1-42.i386.rpm
but it also exists a Version wmaker-0.62.1-68. Is this Version also affected or is there nor need to "downgrade"?
Version 0.65.1 is secure. The lower release number seems to be an mistake. Try --force to install the new RPM. Bye, Thomas -- Thomas Biege, SuSE GmbH, Schanzaeckerstr. 10, 90443 Nuernberg E@mail: thomas@suse.de Function: Security Support & Auditing "lynx -source http://www.suse.de/~thomas/contact/thomas.asc | pgp -fka" Key fingerprint = 51 AD B9 C7 34 FC F2 54 01 4A 1C D4 66 64 09 84
participants (4)
-
Lenz Grimmer
-
Mail2News User
-
Roman Drahtmueller
-
Thomas Biege