- Issued:
- 2010-03-30
- Updated:
- 2010-03-30
RHBA-2010:0289 - Bug Fix Advisory
Synopsis
conga bug fix and enhancement update
Type/Severity
Bug Fix Advisory
Red Hat Insights patch analysis
Identify and remediate systems affected by this advisory.
Topic
Updated Conga packages that fix numerous bugs (including a regression
introduced between Red Hat Enterprise Linux 5.3 and Red Hat Enterprise
Linux 5.4) and add the ability to reset user passwords when logged in to
luci as an administrator are now available.
Description
The Conga project is a management system for remote workstations. It
consists of luci, which is a secure web-based front-end, and ricci, which
is a secure daemon that dispatches incoming messages to underlying
management modules.
This update applies the following bug fixes:
- The behavior of the virsh command changed between Red Hat Enterprise
Linux 5.3 and Red Hat Enterprise Linux 5.4. In Red Hat Enterprise Linux
5.4, non-root users must add a "--read-only" flag to virsh commands. The
ricci component runs the "virsh nodeinfo" command to determine whether a
node can host a Virtual Machine service and it does so as a non-root user.
As a consequence, when run under Red Hat Enterprise Linux 5.4, the "virsh
nodeinfo" command returned no information and luci did not provide an "Add
a virtual machine service" option to Services in the Cluster tab for
clusters that were expected to offer such services. With this update, ricci
now runs a "virsh nodeinfo --readonly" command in line with the changed
behavior, and luci provides options to add Virtual Machine services as
expected. (BZ#519252)
- luci failed to start. (BZ#469881)
- Conga doesn't run with SELinux. (BZ#476698)
- Conga does not add the name of the managed system when adding an "LPAR
Fencing" fence device to a node. (BZ#508142)
- fs resource will remount itself if any configuration changes are made to
cluster.conf. (BZ#514051)
- luci does not validate passwords and incorrect characters can be used.
(BZ#519050)
- previously, the shebang lines in luci's python executables pointed to
"/usr/bin/env python" rather than explicitly referencing the version of
Python installed on the system. This broke those executables in the case
where a user was installing an alternative Python version. With this
update, all shebang lines point explicitly to the system version at
/usr/bin/python. (BZ#521884)
- Conga does not properly handle HA LVM types. (BZ#530129)
This update adds the following enhancement:
- the ability to reset user passwords when logged in to luci as an
administrator was added. (BZ#519268)
All Conga users are advised to upgrade to these updated packages, which
resolve these issues and add this enhancement.
Solution
Before applying this update, make sure all previously-released errata
relevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to
use the Red Hat Network to apply this update are available at
http://kbase.redhat.com/faq/docs/DOC-11259
Affected Products
- Red Hat Enterprise Linux High Availability for x86_64 5 x86_64
- Red Hat Enterprise Linux High Availability for x86_64 5 ppc
- Red Hat Enterprise Linux High Availability for x86_64 5 ia64
- Red Hat Enterprise Linux High Availability for x86_64 5 i386
- Red Hat Enterprise Linux High Availability (for RHEL Server) from RHUI 5 x86_64
- Red Hat Enterprise Linux High Availability (for RHEL Server) from RHUI 5 i386
Fixes
- BZ - 469881 - luci failed to start
- BZ - 476698 - conga doesn't run with selinux
- BZ - 514051 - fs resource will remount itself if any config changes are made to cluster.conf
- BZ - 519050 - Luci does not validate passwords and incorrect characters can be used
- BZ - 519252 - Conga does not show the option to add a virtual machine service
- BZ - 521884 - Fix instances of #!/usr/bin/env python in luci
- BZ - 530129 - conga does not properly handle HA LVM types
CVEs
(none)
References
(none)
Red Hat Enterprise Linux High Availability for x86_64 5
SRPM | |
---|---|
conga-0.12.2-12.el5.src.rpm | SHA-256: 9743549d6dfebf3c4c211a8e7b7b30d44d32d2e9d2a34cd59d38c292dae4065c |
x86_64 | |
luci-0.12.2-12.el5.x86_64.rpm | SHA-256: f1bfb41effcc12da75fd64c44f75775d2485913e1a91ee96e93bce0be815d577 |
ricci-0.12.2-12.el5.x86_64.rpm | SHA-256: ce81a04d4da47eb351181ac06dc338e352680bbe8ff9e9252f76335bbfb9b60c |
ppc | |
luci-0.12.2-12.el5.ppc.rpm | SHA-256: 22aadb44b57632bb4528bbf970208b1931d4d2a7c6f2eb070bf56ab8eccb7a22 |
ricci-0.12.2-12.el5.ppc.rpm | SHA-256: 31947ecc91316ecbc876582e04b44a362f0323d1cddf48932f7b707e78f2011b |
ia64 | |
luci-0.12.2-12.el5.ia64.rpm | SHA-256: fc24a554671c657217c7171ca6d0c4e3a30e3c4cf4d1f13c4efecc6215563ad9 |
ricci-0.12.2-12.el5.ia64.rpm | SHA-256: 75a67dc05f24e7b452f94754933018c7359b344eff2acc13b94f08fddbd0a6bf |
i386 | |
luci-0.12.2-12.el5.i386.rpm | SHA-256: e8cf2c188cccf95796380c805abd4cc7e3c5710114f63dde367e7f0c8f83e6f9 |
ricci-0.12.2-12.el5.i386.rpm | SHA-256: 2d937b57c055d2e98e8f5909d645f277e9b63a732eec77c823ed9195f8071057 |
Red Hat Enterprise Linux High Availability (for RHEL Server) from RHUI 5
SRPM | |
---|---|
conga-0.12.2-12.el5.src.rpm | SHA-256: 9743549d6dfebf3c4c211a8e7b7b30d44d32d2e9d2a34cd59d38c292dae4065c |
x86_64 | |
luci-0.12.2-12.el5.x86_64.rpm | SHA-256: f1bfb41effcc12da75fd64c44f75775d2485913e1a91ee96e93bce0be815d577 |
ricci-0.12.2-12.el5.x86_64.rpm | SHA-256: ce81a04d4da47eb351181ac06dc338e352680bbe8ff9e9252f76335bbfb9b60c |
i386 | |
luci-0.12.2-12.el5.i386.rpm | SHA-256: e8cf2c188cccf95796380c805abd4cc7e3c5710114f63dde367e7f0c8f83e6f9 |
ricci-0.12.2-12.el5.i386.rpm | SHA-256: 2d937b57c055d2e98e8f5909d645f277e9b63a732eec77c823ed9195f8071057 |
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.