netscape security update
| Advisory: | RHSA-2003:027-09 |
|---|---|
| Type: | Security Advisory |
| Severity: | Important |
| Issued on: | 2003-07-09 |
| Last updated on: | 2003-07-09 |
| Affected Products: | Red Hat Enterprise Linux AS (v. 2.1) Red Hat Enterprise Linux ES (v. 2.1) Red Hat Enterprise Linux WS (v. 2.1) |
| CVEs (cve.mitre.org): |
CVE-2002-0846 CVE-2002-1467 |
Details
Updated Netscape 4.8 packages fixing various bugs and vulnerabilities are
now available.
Netscape is a suite of Internet utilities including a Web browser, email
client, and Usenet news reader.
Netscape version 4.8 contains various bugfixes and updates.
Note that Macromedia Flash is no longer included as of this update. The
recommended Macromedia Flash with security fixes no longer supports
Netscape 4.x. The security issues that affected the Macromedia Flash
player include CVE-2002-0846 and CAN-2002-1467.
It is recommended that all Netscape Communicator and Netscape Navigator
users upgrade to these errata packages.
Solution
relevant to your system have been applied.
Please note that this update is available via Red Hat Network. To use Red
Hat Network, launch the Red Hat Update Agent with the following command:
up2date
This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.
Updated packages
| Red Hat Enterprise Linux AS (v. 2.1) | |
| SRPMS: | |
| ftp://updates.redhat.com/rhn/public/2703533/netscape/4:4.8-1/SRPMS/netscape-4.8-1.src.rpm Missing file |
MD5: 032703508f7b88f76ccf165d25205c16 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape/4.8-1/SRPMS/netscape-4.8-1.src.rpm Missing file |
MD5: 032703508f7b88f76ccf165d25205c16 |
| IA-32: | |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-common/4.8-1/i386/netscape-common-4.8-1.i386.rpm Missing file |
MD5: bca8e4fb892620446b5a01d90497af76 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-communicator/4.8-1/i386/netscape-communicator-4.8-1.i386.rpm Missing file |
MD5: 593114a82c9328cf460ee51f0f9f3f88 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-navigator/4.8-1/i386/netscape-navigator-4.8-1.i386.rpm Missing file |
MD5: 15e44faf340c72c07b80d871fef18c37 |
| Red Hat Enterprise Linux ES (v. 2.1) | |
| SRPMS: | |
| ftp://updates.redhat.com/rhn/public/2703533/netscape/4:4.8-1/SRPMS/netscape-4.8-1.src.rpm Missing file |
MD5: 032703508f7b88f76ccf165d25205c16 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape/4.8-1/SRPMS/netscape-4.8-1.src.rpm Missing file |
MD5: 032703508f7b88f76ccf165d25205c16 |
| IA-32: | |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-common/4.8-1/i386/netscape-common-4.8-1.i386.rpm Missing file |
MD5: bca8e4fb892620446b5a01d90497af76 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-communicator/4.8-1/i386/netscape-communicator-4.8-1.i386.rpm Missing file |
MD5: 593114a82c9328cf460ee51f0f9f3f88 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-navigator/4.8-1/i386/netscape-navigator-4.8-1.i386.rpm Missing file |
MD5: 15e44faf340c72c07b80d871fef18c37 |
| Red Hat Enterprise Linux WS (v. 2.1) | |
| SRPMS: | |
| ftp://updates.redhat.com/rhn/public/2703533/netscape/4:4.8-1/SRPMS/netscape-4.8-1.src.rpm Missing file |
MD5: 032703508f7b88f76ccf165d25205c16 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape/4.8-1/SRPMS/netscape-4.8-1.src.rpm Missing file |
MD5: 032703508f7b88f76ccf165d25205c16 |
| IA-32: | |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-common/4.8-1/i386/netscape-common-4.8-1.i386.rpm Missing file |
MD5: bca8e4fb892620446b5a01d90497af76 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-communicator/4.8-1/i386/netscape-communicator-4.8-1.i386.rpm Missing file |
MD5: 593114a82c9328cf460ee51f0f9f3f88 |
| ftp://updates.redhat.com/rhn/repository/NULL/netscape-navigator/4.8-1/i386/netscape-navigator-4.8-1.i386.rpm Missing file |
MD5: 15e44faf340c72c07b80d871fef18c37 |
Bugs fixed (see bugzilla for more information)
62052 - Does the netscape libflashplugin.so use an insecure zlib ??
65862 - A problem for the zh_CN.GB2312 locale
71341 - Lots of security holes in flash plugin
References
https://www.redhat.com/security/data/cve/CVE-2002-1467.html
http://www.macromedia.com/shockwave/download/alternates/#linux
Keywords
These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package
The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/