Re: [suse-sles-e] SLES 9 PatchLevel 3

From: Marcus Meissner (meissner_at_suse.de)
Date: Mon Jun 05 2006 - 22:38:27 CEST


Date: Mon, 5 Jun 2006 22:38:27 +0200
From: Marcus Meissner <meissner@suse.de>
Message-ID: <20060605203827.GB29658@suse.de>
Subject: Re: [suse-sles-e] SLES 9 PatchLevel 3

On Mon, Jun 05, 2006 at 01:20:28PM -0700, Winn Johnston wrote:
> I am trying to confirm, in writing, that the issues
> with apache v. 2.0.49 have been fixed in SUSE LINUX
> Enterprise Server 9 (i586) VERSION = 9 PATCHLEVEL = 3
> We have issued a security check, and the company doing
> the check said we needed to upgrade our apache to
> 2.0.52 However, when running the rug command to view
> the ergent patches there is no listing for this patch.
> It is imparative i have some sort of documentation
> from novel saying they are not volurnerable to the
> issues listed in:

Please see our documentation regarding backports.

> CAN-2004-0811 BID: 11239
        Affects only Apache2 2.0.51, our version is not affected.
        This information is in the CVE entry.

> CAN-2004-0786
        Is fixed.
        http://www.novell.com/linux/security/advisories/2004_32_apache2.html

> CAN-2004-0747
        Is fixed.
        http://www.novell.com/linux/security/advisories/2004_32_apache2.html

> CAN-2004-0751
        Is fixed.
        http://www.novell.com/linux/security/advisories/2004_30_apache2.html

> CAN-2004-0748
        Is fixed.
        http://www.novell.com/linux/security/advisories/2004_30_apache2.html

> CAN-2004-0809 BID: 11185, 11187
        Is fixed.
        http://support.novell.com/techcenter/psdb/031f16f00d8a113c18c9ad3dcf15a055.html

Ciao, Marcus Meissner, SUSE Security Team.

---------------------------------------------------------------------
To unsubscribe, e-mail: suse-sles-e-unsubscribe@suse.com
For additional commands, e-mail: suse-sles-e-help@suse.com



This archive was generated by hypermail 2.1.7 : Mon Jun 05 2006 - 22:38:32 CEST