Updated gzip packages that fix several security issues are now available
for Red Hat Enterprise Linux.
This update has been rated as having moderate security impact by the Red
Hat Security Response Team.
The gzip package contains the GNU gzip data compression program.
Tavis Ormandy of the Google Security Team discovered two denial of service
flaws in the way gzip expanded archive files. If a victim expanded a
specially crafted archive, it could cause the gzip executable to hang or
crash. (CVE-2006-4334, CVE-2006-4338)
Tavis Ormandy of the Google Security Team discovered several code execution
flaws in the way gzip expanded archive files. If a victim expanded a
specially crafted archive, it could cause the gzip executable to crash or
execute arbitrary code. (CVE-2006-4335, CVE-2006-4336, CVE-2006-4337)
Users of gzip should upgrade to these updated packages, which contain a
backported patch and is not vulnerable to these issues.
| Red Hat Desktop (v. 3) |
|
| SRPMS: |
gzip-1.3.3-13.rhel3.src.rpm
File outdated by: RHBA-2007:0427 |
6bf7ab261a159f83cfe587e77314e95c |
| |
| IA-32: |
gzip-1.3.3-13.rhel3.i386.rpm
File outdated by: RHBA-2007:0427 |
842a7c1efcb3ad77701b64413e54408b |
| |
| x86_64: |
gzip-1.3.3-13.rhel3.x86_64.rpm
File outdated by: RHBA-2007:0427 |
565eecd82fbe55386cdf228fccdfaecc |
| |
| Red Hat Desktop (v. 4) |
|
| SRPMS: |
gzip-1.3.3-16.rhel4.src.rpm
File outdated by: RHBA-2007:0502 |
5648a7b9c26a7cf20f98dc7ec35babf5 |
| |
| IA-32: |
gzip-1.3.3-16.rhel4.i386.rpm
File outdated by: RHBA-2007:0502 |
49ccf9c31fa89e32612e6842e56725a8 |
| |
| x86_64: |
gzip-1.3.3-16.rhel4.x86_64.rpm
File outdated by: RHBA-2007:0502 |
f6ef264363bd174e77b0676cb4bea479 |
| |
| Red Hat Enterprise Linux AS (v. 2.1) |
|
| SRPMS: |
| gzip-1.3-19.rhel2.src.rpm |
ad45a2b7d359191e2d09ea99576e2dc7 |
| |
| IA-32: |
| gzip-1.3-19.rhel2.i386.rpm |
74ea72195027b0a56065882957ae6aed |
| |
| IA-64: |
| gzip-1.3-19.rhel2.ia64.rpm |
221b875805ccab0bbaa150664a26ce50 |
| |
| Red Hat Enterprise Linux AS (v. 3) |
|
| SRPMS: |
gzip-1.3.3-13.rhel3.src.rpm
File outdated by: RHBA-2007:0427 |
6bf7ab261a159f83cfe587e77314e95c |
| |
| IA-32: |
gzip-1.3.3-13.rhel3.i386.rpm
File outdated by: RHBA-2007:0427 |
842a7c1efcb3ad77701b64413e54408b |
| |
| IA-64: |
gzip-1.3.3-13.rhel3.ia64.rpm
File outdated by: RHBA-2007:0427 |
f8d04b7ae735d4e84213bf0bfdfcc7b4 |
| |
| PPC: |
gzip-1.3.3-13.rhel3.ppc.rpm
File outdated by: RHBA-2007:0427 |
391f0bf7e9fdea0f44c31518603a35a2 |
| |
| s390: |
gzip-1.3.3-13.rhel3.s390.rpm
File outdated by: RHBA-2007:0427 |
836385ed074828038b67360c5b019c07 |
| |
| s390x: |
gzip-1.3.3-13.rhel3.s390x.rpm
File outdated by: RHBA-2007:0427 |
b1a0e78bc41851a871649871ad3fa3e7 |
| |
| x86_64: |
gzip-1.3.3-13.rhel3.x86_64.rpm
File outdated by: RHBA-2007:0427 |
565eecd82fbe55386cdf228fccdfaecc |
| |
| Red Hat Enterprise Linux AS (v. 4) |
|
| SRPMS: |
gzip-1.3.3-16.rhel4.src.rpm
File outdated by: RHBA-2007:0502 |
5648a7b9c26a7cf20f98dc7ec35babf5 |
| |
| IA-32: |
gzip-1.3.3-16.rhel4.i386.rpm
File outdated by: RHBA-2007:0502 |
49ccf9c31fa89e32612e6842e56725a8 |
| |
| IA-64: |
gzip-1.3.3-16.rhel4.ia64.rpm
File outdated by: RHBA-2007:0502 |
85f98bebe3367e17b608317cb3241f27 |
| |
| PPC: |
gzip-1.3.3-16.rhel4.ppc.rpm
File outdated by: RHBA-2007:0502 |
06e9cdaacd44994bf34c2e701676f154 |
| |
| s390: |
gzip-1.3.3-16.rhel4.s390.rpm
File outdated by: RHBA-2007:0502 |
821f36266c7b91cf4b8dc9ec50280c76 |
| |
| s390x: |
gzip-1.3.3-16.rhel4.s390x.rpm
File outdated by: RHBA-2007:0502 |
364d5e60560ab8c6e47580da67cc1921 |
| |
| x86_64: |
gzip-1.3.3-16.rhel4.x86_64.rpm
File outdated by: RHBA-2007:0502 |
f6ef264363bd174e77b0676cb4bea479 |
| |
| Red Hat Enterprise Linux ES (v. 2.1) |
|
| SRPMS: |
| gzip-1.3-19.rhel2.src.rpm |
ad45a2b7d359191e2d09ea99576e2dc7 |
| |
| IA-32: |
| gzip-1.3-19.rhel2.i386.rpm |
74ea72195027b0a56065882957ae6aed |
| |
| Red Hat Enterprise Linux ES (v. 3) |
|
| SRPMS: |
gzip-1.3.3-13.rhel3.src.rpm
File outdated by: RHBA-2007:0427 |
6bf7ab261a159f83cfe587e77314e95c |
| |
| IA-32: |
gzip-1.3.3-13.rhel3.i386.rpm
File outdated by: RHBA-2007:0427 |
842a7c1efcb3ad77701b64413e54408b |
| |
| IA-64: |
gzip-1.3.3-13.rhel3.ia64.rpm
File outdated by: RHBA-2007:0427 |
f8d04b7ae735d4e84213bf0bfdfcc7b4 |
| |
| x86_64: |
gzip-1.3.3-13.rhel3.x86_64.rpm
File outdated by: RHBA-2007:0427 |
565eecd82fbe55386cdf228fccdfaecc |
| |
| Red Hat Enterprise Linux ES (v. 4) |
|
| SRPMS: |
gzip-1.3.3-16.rhel4.src.rpm
File outdated by: RHBA-2007:0502 |
5648a7b9c26a7cf20f98dc7ec35babf5 |
| |
| IA-32: |
gzip-1.3.3-16.rhel4.i386.rpm
File outdated by: RHBA-2007:0502 |
49ccf9c31fa89e32612e6842e56725a8 |
| |
| IA-64: |
gzip-1.3.3-16.rhel4.ia64.rpm
File outdated by: RHBA-2007:0502 |
85f98bebe3367e17b608317cb3241f27 |
| |
| x86_64: |
gzip-1.3.3-16.rhel4.x86_64.rpm
File outdated by: RHBA-2007:0502 |
f6ef264363bd174e77b0676cb4bea479 |
| |
| Red Hat Enterprise Linux WS (v. 2.1) |
|
| SRPMS: |
| gzip-1.3-19.rhel2.src.rpm |
ad45a2b7d359191e2d09ea99576e2dc7 |
| |
| IA-32: |
| gzip-1.3-19.rhel2.i386.rpm |
74ea72195027b0a56065882957ae6aed |
| |
| Red Hat Enterprise Linux WS (v. 3) |
|
| SRPMS: |
gzip-1.3.3-13.rhel3.src.rpm
File outdated by: RHBA-2007:0427 |
6bf7ab261a159f83cfe587e77314e95c |
| |
| IA-32: |
gzip-1.3.3-13.rhel3.i386.rpm
File outdated by: RHBA-2007:0427 |
842a7c1efcb3ad77701b64413e54408b |
| |
| IA-64: |
gzip-1.3.3-13.rhel3.ia64.rpm
File outdated by: RHBA-2007:0427 |
f8d04b7ae735d4e84213bf0bfdfcc7b4 |
| |
| x86_64: |
gzip-1.3.3-13.rhel3.x86_64.rpm
File outdated by: RHBA-2007:0427 |
565eecd82fbe55386cdf228fccdfaecc |
| |
| Red Hat Enterprise Linux WS (v. 4) |
|
| SRPMS: |
gzip-1.3.3-16.rhel4.src.rpm
File outdated by: RHBA-2007:0502 |
5648a7b9c26a7cf20f98dc7ec35babf5 |
| |
| IA-32: |
gzip-1.3.3-16.rhel4.i386.rpm
File outdated by: RHBA-2007:0502 |
49ccf9c31fa89e32612e6842e56725a8 |
| |
| IA-64: |
gzip-1.3.3-16.rhel4.ia64.rpm
File outdated by: RHBA-2007:0502 |
85f98bebe3367e17b608317cb3241f27 |
| |
| x86_64: |
gzip-1.3.3-16.rhel4.x86_64.rpm
File outdated by: RHBA-2007:0502 |
f6ef264363bd174e77b0676cb4bea479 |
| |
| Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor |
|
| SRPMS: |
| gzip-1.3-19.rhel2.src.rpm |
ad45a2b7d359191e2d09ea99576e2dc7 |
| |
| IA-64: |
| gzip-1.3-19.rhel2.ia64.rpm |
221b875805ccab0bbaa150664a26ce50 |
| |
(The unlinked packages above are only available from the Red Hat Network)
|
204676 - CVE-2006-4334 gzip multiple issues (CVE-2006-4335, CVE-2006-4336, CVE-2006-4337, CVE-2006-4338)