Bug Fix Advisory pump bug fix update

Advisory: RHBA-2009:0963-1
Type: Bug Fix Advisory
Severity: N/A
Issued on: 2009-05-18
Last updated on: 2009-05-18
Affected Products: Red Hat Desktop (v. 4)
Red Hat Enterprise Linux AS (v. 4)
Red Hat Enterprise Linux ES (v. 4)
Red Hat Enterprise Linux WS (v. 4)
OVAL: N/A

Details

Updated pump packages that fix a bug are now available.

Pump is a combined BOOTP and DHCP client daemon, which allows your machine
to retrieve configuration information from a server. You should install
this package if you are on a network which uses BOOTP or DHCP.

These updated packages fix the following bug:

* pump required the DHCP source port to match the value of
BOOTP_SERVER_PORT. If the network's DHCP server is sending DHCP offers from
a port other than the default port 67, pump may not accept the offer, and
will therefore time out without obtaining an address. Note that while it is
common practice for DHCP servers to send on port 67, this is not actually
mandated in the relevant protocol (RFC 1513). The version of pump provided
with these updated packages does not check the source port and therefore
will accept packets originating from ports other than port 67 and use them
to obtain an address. (BZ#470586)

Users of pump are advised to upgrade to these updated packages, which
resolve this issue.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied.

This update is available via Red Hat Network. Details on how to use
the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/docs/DOC-11259

Updated packages

Red Hat Desktop (v. 4)

SRPMS:
pump-0.8.21-1.2.src.rpm     1111235bc41bd08b187c33e2bcdf2a85
 
IA-32:
netconfig-0.8.21-1.2.i386.rpm     e60502e04b31bbe9e974f7aaa018acef
pump-devel-0.8.21-1.2.i386.rpm     afd6860be63af73a67433881ec228fbc
 
x86_64:
netconfig-0.8.21-1.2.x86_64.rpm     8ba66a74c2fe777af2bfeae3ed7f7e2e
pump-devel-0.8.21-1.2.x86_64.rpm     442642f85cc03b0807d719e36ff6f2c4
 
Red Hat Enterprise Linux AS (v. 4)

SRPMS:
pump-0.8.21-1.2.src.rpm     1111235bc41bd08b187c33e2bcdf2a85
 
IA-32:
netconfig-0.8.21-1.2.i386.rpm     e60502e04b31bbe9e974f7aaa018acef
pump-devel-0.8.21-1.2.i386.rpm     afd6860be63af73a67433881ec228fbc
 
IA-64:
netconfig-0.8.21-1.2.ia64.rpm     72d5807051f8b92e08881f3f566f94ca
pump-devel-0.8.21-1.2.ia64.rpm     662fe06811ea620200747a12bee78ffb
 
PPC:
netconfig-0.8.21-1.2.ppc.rpm     b9e8ba1e331e7599fccc7c894ad95120
pump-devel-0.8.21-1.2.ppc.rpm     81d31f8a6bc1b5a4288f9c4bbfb42244
 
s390:
netconfig-0.8.21-1.2.s390.rpm     4029bc220c66e6e634359640ef1b61b0
pump-devel-0.8.21-1.2.s390.rpm     176c986660e26b433f164722ab366410
 
s390x:
netconfig-0.8.21-1.2.s390x.rpm     706ce9318da4042dd98fcece87fa54c9
pump-devel-0.8.21-1.2.s390x.rpm     7f571beaaed5599bead15323c5660d57
 
x86_64:
netconfig-0.8.21-1.2.x86_64.rpm     8ba66a74c2fe777af2bfeae3ed7f7e2e
pump-devel-0.8.21-1.2.x86_64.rpm     442642f85cc03b0807d719e36ff6f2c4
 
Red Hat Enterprise Linux ES (v. 4)

SRPMS:
pump-0.8.21-1.2.src.rpm     1111235bc41bd08b187c33e2bcdf2a85
 
IA-32:
netconfig-0.8.21-1.2.i386.rpm     e60502e04b31bbe9e974f7aaa018acef
pump-devel-0.8.21-1.2.i386.rpm     afd6860be63af73a67433881ec228fbc
 
IA-64:
netconfig-0.8.21-1.2.ia64.rpm     72d5807051f8b92e08881f3f566f94ca
pump-devel-0.8.21-1.2.ia64.rpm     662fe06811ea620200747a12bee78ffb
 
x86_64:
netconfig-0.8.21-1.2.x86_64.rpm     8ba66a74c2fe777af2bfeae3ed7f7e2e
pump-devel-0.8.21-1.2.x86_64.rpm     442642f85cc03b0807d719e36ff6f2c4
 
Red Hat Enterprise Linux WS (v. 4)

SRPMS:
pump-0.8.21-1.2.src.rpm     1111235bc41bd08b187c33e2bcdf2a85
 
IA-32:
netconfig-0.8.21-1.2.i386.rpm     e60502e04b31bbe9e974f7aaa018acef
pump-devel-0.8.21-1.2.i386.rpm     afd6860be63af73a67433881ec228fbc
 
IA-64:
netconfig-0.8.21-1.2.ia64.rpm     72d5807051f8b92e08881f3f566f94ca
pump-devel-0.8.21-1.2.ia64.rpm     662fe06811ea620200747a12bee78ffb
 
x86_64:
netconfig-0.8.21-1.2.x86_64.rpm     8ba66a74c2fe777af2bfeae3ed7f7e2e
pump-devel-0.8.21-1.2.x86_64.rpm     442642f85cc03b0807d719e36ff6f2c4
 
(The unlinked packages above are only available from the Red Hat Network)


These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/