Skip to navigation

Security Advisory cyrus-sasl security update

Advisory: RHSA-2004:546-18
Type: Security Advisory
Severity: Important
Issued on: 2004-10-07
Last updated on: 2004-10-07
Affected Products: Red Hat Desktop (v. 3)
Red Hat Enterprise Linux AS (v. 2.1)
Red Hat Enterprise Linux AS (v. 3)
Red Hat Enterprise Linux ES (v. 2.1)
Red Hat Enterprise Linux ES (v. 3)
Red Hat Enterprise Linux WS (v. 2.1)
Red Hat Enterprise Linux WS (v. 3)
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor
CVEs (cve.mitre.org): CVE-2004-0884

Details

Updated cyrus-sasl packages that fix a setuid and setgid application
vulnerability are now available.

[Updated 7th October 2004]
Revised cryus-sasl packages have been added for Red Hat Enterprise Linux 3;
the patch in the previous packages broke interaction with ldap.

The cyrus-sasl package contains the Cyrus implementation of SASL. SASL is
the Simple Authentication and Security Layer, a method for adding
authentication support to connection-based protocols.

At application startup, libsasl and libsasl2 attempts to build a list
of all available SASL plug-ins which are available on the system. To do
so, the libraries search for and attempt to load every shared library found
within the plug-in directory. This location can be set with the SASL_PATH
environment variable.

In situations where an untrusted local user can affect the environment of a
privileged process, this behavior could be exploited to run arbitrary code
with the privileges of a setuid or setgid application. The Common
Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name
CAN-2004-0884 to this issue.

Users of cyrus-sasl should upgrade to these updated packages, which contain
backported patches and are not vulnerable to this issue.


Solution

Before applying this update, make sure that all previously-released
errata relevant to your system have been applied. Use Red Hat
Network to download and update your packages. To launch the Red Hat
Update Agent, use the following command:

up2date

For information on how to install packages manually, refer to the
following Web page for the System Administration or Customization
guide specific to your system:

http://www.redhat.com/docs/manuals/enterprise/

Updated packages

Red Hat Desktop (v. 3)

SRPMS:
cyrus-sasl-2.1.15-10.src.rpm
File outdated by:  RHSA-2007:0878
    MD5: a9cde51259dec493061ea0e03bf04537
cyrus-sasl-2.1.15-10.src.rpm
File outdated by:  RHSA-2007:0878
    MD5: a9cde51259dec493061ea0e03bf04537
 
IA-32:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-devel-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 55541276383fa24ed49fc40be3720263
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
 
x86_64:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 6719a7d1f5aab57f890983c7b067a77f
cyrus-sasl-devel-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: e1ab3ddf06867ebee94eb8d30acc0bea
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-gssapi-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 2176eb0408120e072a9ea434d970d656
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-md5-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: a84b19147e50c5f3690356686d31f1bd
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
cyrus-sasl-plain-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 434fb1bc67c4f98a84a7fc641b71fe3f
 
Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
ftp://updates.redhat.com/rhn/public/2703533/cyrus-sasl/1.5.24-26/SRPMS/cyrus-sasl-1.5.24-26.src.rpm
Missing file
    MD5: adf38e226dfa211bb2e7e83c5c5418b9
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/SRPMS/cyrus-sasl-1.5.24-26.src.rpm
Missing file
    MD5: adf38e226dfa211bb2e7e83c5c5418b9
 
IA-32:
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/i386/cyrus-sasl-1.5.24-26.i386.rpm
Missing file
    MD5: 0ecb1995b05aebf41e8c609b367e902f
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-devel/1.5.24-26/i386/cyrus-sasl-devel-1.5.24-26.i386.rpm
Missing file
    MD5: 846a21bc2e1a84f37f9f43f973ebda44
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-gssapi/1.5.24-26/i386/cyrus-sasl-gssapi-1.5.24-26.i386.rpm
Missing file
    MD5: 9d29af70b1dd3a98f8eba31fa796d338
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-md5/1.5.24-26/i386/cyrus-sasl-md5-1.5.24-26.i386.rpm
Missing file
    MD5: ddaf1332b6bdad447e1550fccab267eb
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-plain/1.5.24-26/i386/cyrus-sasl-plain-1.5.24-26.i386.rpm
Missing file
    MD5: 67c7f02257346ccbc236a02bbac49925
 
IA-64:
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/ia64/cyrus-sasl-1.5.24-26.ia64.rpm
Missing file
    MD5: 97497be93ad3074862be30b3eaf9fe46
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-devel/1.5.24-26/ia64/cyrus-sasl-devel-1.5.24-26.ia64.rpm
Missing file
    MD5: 6c4362bc42c9c41f7eb07b61ee733320
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-gssapi/1.5.24-26/ia64/cyrus-sasl-gssapi-1.5.24-26.ia64.rpm
Missing file
    MD5: bd3a433063c18f2384bc9249a58d8504
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-md5/1.5.24-26/ia64/cyrus-sasl-md5-1.5.24-26.ia64.rpm
Missing file
    MD5: 6d34fc4ff8ffda80308d02e82bcefc64
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-plain/1.5.24-26/ia64/cyrus-sasl-plain-1.5.24-26.ia64.rpm
Missing file
    MD5: 1eb867b4419336e95ffffec0a88fe01f
 
Red Hat Enterprise Linux AS (v. 3)

SRPMS:
cyrus-sasl-2.1.15-10.src.rpm
File outdated by:  RHSA-2007:0878
    MD5: a9cde51259dec493061ea0e03bf04537
cyrus-sasl-2.1.15-10.src.rpm
File outdated by:  RHSA-2007:0878
    MD5: a9cde51259dec493061ea0e03bf04537
 
IA-32:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-devel-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 55541276383fa24ed49fc40be3720263
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
 
IA-64:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: aa10aabc5083f29c91fc21b9b5e34081
cyrus-sasl-devel-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 25ff6248dc2c62835be4db608cfcd2b5
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-gssapi-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: e22e44ff1ef945b6f13cab172380e53d
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-md5-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 90c8505c7c4e6e6657332c604b83a43c
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
cyrus-sasl-plain-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: baa93f3bfb4dfae22b5a2971e9b83e35
 
PPC:
cyrus-sasl-2.1.15-10.ppc.rpm
File outdated by:  RHSA-2007:0878
    MD5: b2bddd0010bd1340b753617edcb90caa
cyrus-sasl-2.1.15-10.ppc64.rpm
File outdated by:  RHSA-2007:0878
    MD5: edbd0ed195134adf55d2619ae86294ef
cyrus-sasl-devel-2.1.15-10.ppc.rpm
File outdated by:  RHSA-2007:0878
    MD5: b110c26ced4d8557524e53ccc26ed46d
cyrus-sasl-gssapi-2.1.15-10.ppc.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3bf9b253bbd5e280367b85fa99f99e8c
cyrus-sasl-md5-2.1.15-10.ppc.rpm
File outdated by:  RHSA-2007:0878
    MD5: 879100afe15b6641808e979edeef445c
cyrus-sasl-plain-2.1.15-10.ppc.rpm
File outdated by:  RHSA-2007:0878
    MD5: 8c8efc6cccb8cb3a09313133fbf912d6
 
s390:
cyrus-sasl-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: 51f034feb0c6ff15940fa9ee8825b313
cyrus-sasl-devel-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: 21d68bbf2ec87862ea962bb425803dca
cyrus-sasl-gssapi-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: 01ee5010919fe6810390042efe14fdb8
cyrus-sasl-md5-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: b46dec0bfe0cd3d00b73d76e93c99ef0
cyrus-sasl-plain-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4d77001213929ab7dc7b0f29f8b864dc
 
s390x:
cyrus-sasl-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: 51f034feb0c6ff15940fa9ee8825b313
cyrus-sasl-2.1.15-10.s390x.rpm
File outdated by:  RHSA-2007:0878
    MD5: 993b18d386a38b63013cf3036907a81d
cyrus-sasl-devel-2.1.15-10.s390x.rpm
File outdated by:  RHSA-2007:0878
    MD5: 8aafa73a49830c989bd0c41733ac4d16
cyrus-sasl-gssapi-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: 01ee5010919fe6810390042efe14fdb8
cyrus-sasl-gssapi-2.1.15-10.s390x.rpm
File outdated by:  RHSA-2007:0878
    MD5: 9a758c6607181142de0754bad0472f6a
cyrus-sasl-md5-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: b46dec0bfe0cd3d00b73d76e93c99ef0
cyrus-sasl-md5-2.1.15-10.s390x.rpm
File outdated by:  RHSA-2007:0878
    MD5: 53d9d697764a09700b9fd09fb0367fc8
cyrus-sasl-plain-2.1.15-10.s390.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4d77001213929ab7dc7b0f29f8b864dc
cyrus-sasl-plain-2.1.15-10.s390x.rpm
File outdated by:  RHSA-2007:0878
    MD5: 7183d87047ab36d80499dd74d3944927
 
x86_64:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 6719a7d1f5aab57f890983c7b067a77f
cyrus-sasl-devel-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: e1ab3ddf06867ebee94eb8d30acc0bea
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-gssapi-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 2176eb0408120e072a9ea434d970d656
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-md5-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: a84b19147e50c5f3690356686d31f1bd
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
cyrus-sasl-plain-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 434fb1bc67c4f98a84a7fc641b71fe3f
 
Red Hat Enterprise Linux ES (v. 2.1)

SRPMS:
ftp://updates.redhat.com/rhn/public/2703533/cyrus-sasl/1.5.24-26/SRPMS/cyrus-sasl-1.5.24-26.src.rpm
Missing file
    MD5: adf38e226dfa211bb2e7e83c5c5418b9
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/SRPMS/cyrus-sasl-1.5.24-26.src.rpm
Missing file
    MD5: adf38e226dfa211bb2e7e83c5c5418b9
 
IA-32:
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/i386/cyrus-sasl-1.5.24-26.i386.rpm
Missing file
    MD5: 0ecb1995b05aebf41e8c609b367e902f
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-devel/1.5.24-26/i386/cyrus-sasl-devel-1.5.24-26.i386.rpm
Missing file
    MD5: 846a21bc2e1a84f37f9f43f973ebda44
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-gssapi/1.5.24-26/i386/cyrus-sasl-gssapi-1.5.24-26.i386.rpm
Missing file
    MD5: 9d29af70b1dd3a98f8eba31fa796d338
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-md5/1.5.24-26/i386/cyrus-sasl-md5-1.5.24-26.i386.rpm
Missing file
    MD5: ddaf1332b6bdad447e1550fccab267eb
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-plain/1.5.24-26/i386/cyrus-sasl-plain-1.5.24-26.i386.rpm
Missing file
    MD5: 67c7f02257346ccbc236a02bbac49925
 
Red Hat Enterprise Linux ES (v. 3)

SRPMS:
cyrus-sasl-2.1.15-10.src.rpm
File outdated by:  RHSA-2007:0878
    MD5: a9cde51259dec493061ea0e03bf04537
cyrus-sasl-2.1.15-10.src.rpm
File outdated by:  RHSA-2007:0878
    MD5: a9cde51259dec493061ea0e03bf04537
 
IA-32:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-devel-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 55541276383fa24ed49fc40be3720263
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
 
IA-64:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: aa10aabc5083f29c91fc21b9b5e34081
cyrus-sasl-devel-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 25ff6248dc2c62835be4db608cfcd2b5
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-gssapi-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: e22e44ff1ef945b6f13cab172380e53d
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-md5-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 90c8505c7c4e6e6657332c604b83a43c
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
cyrus-sasl-plain-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: baa93f3bfb4dfae22b5a2971e9b83e35
 
x86_64:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 6719a7d1f5aab57f890983c7b067a77f
cyrus-sasl-devel-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: e1ab3ddf06867ebee94eb8d30acc0bea
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-gssapi-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 2176eb0408120e072a9ea434d970d656
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-md5-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: a84b19147e50c5f3690356686d31f1bd
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
cyrus-sasl-plain-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 434fb1bc67c4f98a84a7fc641b71fe3f
 
Red Hat Enterprise Linux WS (v. 2.1)

SRPMS:
ftp://updates.redhat.com/rhn/public/2703533/cyrus-sasl/1.5.24-26/SRPMS/cyrus-sasl-1.5.24-26.src.rpm
Missing file
    MD5: adf38e226dfa211bb2e7e83c5c5418b9
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/SRPMS/cyrus-sasl-1.5.24-26.src.rpm
Missing file
    MD5: adf38e226dfa211bb2e7e83c5c5418b9
 
IA-32:
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/i386/cyrus-sasl-1.5.24-26.i386.rpm
Missing file
    MD5: 0ecb1995b05aebf41e8c609b367e902f
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-devel/1.5.24-26/i386/cyrus-sasl-devel-1.5.24-26.i386.rpm
Missing file
    MD5: 846a21bc2e1a84f37f9f43f973ebda44
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-gssapi/1.5.24-26/i386/cyrus-sasl-gssapi-1.5.24-26.i386.rpm
Missing file
    MD5: 9d29af70b1dd3a98f8eba31fa796d338
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-md5/1.5.24-26/i386/cyrus-sasl-md5-1.5.24-26.i386.rpm
Missing file
    MD5: ddaf1332b6bdad447e1550fccab267eb
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-plain/1.5.24-26/i386/cyrus-sasl-plain-1.5.24-26.i386.rpm
Missing file
    MD5: 67c7f02257346ccbc236a02bbac49925
 
Red Hat Enterprise Linux WS (v. 3)

SRPMS:
cyrus-sasl-2.1.15-10.src.rpm
File outdated by:  RHSA-2007:0878
    MD5: a9cde51259dec493061ea0e03bf04537
cyrus-sasl-2.1.15-10.src.rpm
File outdated by:  RHSA-2007:0878
    MD5: a9cde51259dec493061ea0e03bf04537
 
IA-32:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-devel-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 55541276383fa24ed49fc40be3720263
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
 
IA-64:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: aa10aabc5083f29c91fc21b9b5e34081
cyrus-sasl-devel-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 25ff6248dc2c62835be4db608cfcd2b5
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-gssapi-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: e22e44ff1ef945b6f13cab172380e53d
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-md5-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 90c8505c7c4e6e6657332c604b83a43c
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
cyrus-sasl-plain-2.1.15-10.ia64.rpm
File outdated by:  RHSA-2007:0878
    MD5: baa93f3bfb4dfae22b5a2971e9b83e35
 
x86_64:
cyrus-sasl-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4e7a31beac1f79bda62f5715686ed652
cyrus-sasl-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 6719a7d1f5aab57f890983c7b067a77f
cyrus-sasl-devel-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: e1ab3ddf06867ebee94eb8d30acc0bea
cyrus-sasl-gssapi-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: b4cb1b1d9f43c06371a85eac06de92ac
cyrus-sasl-gssapi-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 2176eb0408120e072a9ea434d970d656
cyrus-sasl-md5-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 4c481245bb88965e5501f787f67fb863
cyrus-sasl-md5-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: a84b19147e50c5f3690356686d31f1bd
cyrus-sasl-plain-2.1.15-10.i386.rpm
File outdated by:  RHSA-2007:0878
    MD5: 3567df72f78bec2755943a2be732dbbb
cyrus-sasl-plain-2.1.15-10.x86_64.rpm
File outdated by:  RHSA-2007:0878
    MD5: 434fb1bc67c4f98a84a7fc641b71fe3f
 
Red Hat Linux Advanced Workstation 2.1 for the Itanium Processor

SRPMS:
ftp://updates.redhat.com/rhn/public/2703533/cyrus-sasl/1.5.24-26/SRPMS/cyrus-sasl-1.5.24-26.src.rpm
Missing file
    MD5: adf38e226dfa211bb2e7e83c5c5418b9
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/SRPMS/cyrus-sasl-1.5.24-26.src.rpm
Missing file
    MD5: adf38e226dfa211bb2e7e83c5c5418b9
 
IA-64:
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl/1.5.24-26/ia64/cyrus-sasl-1.5.24-26.ia64.rpm
Missing file
    MD5: 97497be93ad3074862be30b3eaf9fe46
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-devel/1.5.24-26/ia64/cyrus-sasl-devel-1.5.24-26.ia64.rpm
Missing file
    MD5: 6c4362bc42c9c41f7eb07b61ee733320
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-gssapi/1.5.24-26/ia64/cyrus-sasl-gssapi-1.5.24-26.ia64.rpm
Missing file
    MD5: bd3a433063c18f2384bc9249a58d8504
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-md5/1.5.24-26/ia64/cyrus-sasl-md5-1.5.24-26.ia64.rpm
Missing file
    MD5: 6d34fc4ff8ffda80308d02e82bcefc64
ftp://updates.redhat.com/rhn/repository/NULL/cyrus-sasl-plain/1.5.24-26/ia64/cyrus-sasl-plain-1.5.24-26.ia64.rpm
Missing file
    MD5: 1eb867b4419336e95ffffec0a88fe01f
 

Bugs fixed (see bugzilla for more information)

134657 - CAN-2004-0884 privilege escalation
134979 - cyrus-sasl causes crashes with ldap


References


Keywords

environment


These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/