<?xml version="1.0" encoding="UTF-8"?>

<oval_definitions xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:unix-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix" xmlns:red-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-common-5 oval-common-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5 oval-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#unix unix-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#linux linux-definitions-schema.xsd">
  <generator>
    <oval:product_name>Red Hat OVAL Patch Definition Merger</oval:product_name>
    <oval:product_version>2</oval:product_version>
    <oval:schema_version>5.3</oval:schema_version>
    <oval:timestamp>2008-01-23T07:25:08
</oval:timestamp>
  </generator>
<definitions>
<definition id="oval:com.redhat.rhba:def:20070026" version="302" class="patch">
      <metadata>
        <title>RHBA-2007:0026: htdig bug fix update
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        </affected>
        <reference source="RHBA" ref_id="RHBA-2007:0026-02" ref_url="https://rhn.redhat.com/errata/RHBA-2007-0026.html" />
	<description>The htdig system is a complete world wide web indexing and searching
system for a small domain or intranet. This system is not meant to replace
the need for powerful internet-wide search systems like Lycos, Infoseek,
Webcrawler and AltaVista. Instead it is meant to cover the search needs for
a single company, campus, or even a particular sub section of a web site. As
opposed to some WAIS-based or web-server based search engines, htdig can
span several web servers at a site. The type of these different web servers
doesn't matter as long as they understand the HTTP 1.0 protocol.
htdig is also used by KDE to search KDE's HTML documentation.

Bugs fixed in this update include:

* rundig script (/usr/bin/rundig) missed "$opts" on two calls to htfuzzy.

* htfuzzy segfaulted when database is empty.

* htdig was unable to open empty database on 64bits.

* htdig showed full path to configuration file when accessed from the web.

Users should upgrade to this updated package, which resolves these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-06-07" />
        <updated date="2007-06-07" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-1191">CVE-2000-1191</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhba:tst:20070026002" comment="htdig is earlier than 2:3.1.6-7.el3" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070026003" comment="htdig is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhba:def:20070304" version="302" class="patch">
      <metadata>
        <title>RHBA-2007:0304: Updated kernel packages available for Red Hat Enterprise Linux 4 Update 5
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHBA" ref_id="RHBA-2007:0304-02" ref_url="https://rhn.redhat.com/errata/RHBA-2007-0304.html" />
	<description>New features introduced in this update include:

* Xen paravirt kernels for x86/x86_64* 
* CONFIG_SERIAL_8250_NR_UARTS is increased to 64
* implement diskdump support for sata_nv driver
* implement diskdump support for ibmvscsi driver
* add netdump support to 8139cp driver
* update CIFS to 1.45

Added Platform support:

* add support to allow disabling of MSI on PHX6700/6702 SHPC
* add support for Intel ICH9 chipset
* add PCIe power management quirk
* add support for H206 processor PowerNow! with new freqency control
* add support for AMD quad-core systems
* add support for RDTSCP
* add MCE Thresholding support for AMD 0x10 family processors
* add PCI-Express support for Altix
* add support for eClipz
* add new ppc host ethernet adapter device driver
* update SHUB2 hardware support

The following device drivers have been upgraded to new versions:

3w-9xxx: 2.26.04.010 to 2.26.05.007
ahci: 1.2 to 2.0
ata_piix: 1.05 to 2.00ac7
bnx2: 1.4.38 to 1.4.43-rh
bonding: 2.6.3 to 2.6.3-rh
cciss: 2.6.10 to 2.6.14
e1000: 7.0.33-k2-NAPI to 7.2.7-k2-NAPI
ibmvscsic: 1.5.6 to 1.5.7
ipr: 2.0.11.2 to 2.0.11.4
ixgb: 1.0.100-k2-NAPI to 1.0.109-k2-NAPI
libata: 1.20 to 2.00
megaraid_mm: 2.20.2.6 to 2.20.2.6rh
megaraid_sas: 00.00.02.03-RH1 to 00.00.03.05
mptbase: 3.02.62.01rh to 3.02.73rh
pdc_adma: 0.03 to 0.04
qla2100: 8.01.04-d7 to 8.01.04-d8-rh1
qla2200: 8.01.04-d7 to 8.01.04-d8-rh1
qla2300: 8.01.04-d7 to 8.01.04-d8-rh1
qla2322: 8.01.04-d7 to 8.01.04-d8-rh1
qla2400: 8.01.04-d7 to 8.01.04-d8-rh1
qla2xxx: 8.01.04-d7 to 8.01.04-d8-rh1
qla6312: 8.01.04-d7 to 8.01.04-d8-rh1
r8169: 1.2 to 2.2LK-NAPI
sata_mv: 0.6 to 0.7
sata_nv: 0.8 to 3.2
sata_promise: 1.04 to 1.05
sata_qstor: 0.05 to 0.06
sata_sil: 0.9 to 2.0
sata_sis: 0.5 to 0.6
sata_svw: 1.07 to 2.0
sata_sx4: 0.8 to 0.9
sata_uli: 0.5 to 1.0
sata_via: 1.1 to 2.0
sata_vsc: 1.2 to 2.0
sky2: 1.1 to 1.6
stex: 2.9.0.13 to 3.0.0.1
tg3: 3.52-rh to 3.64-rh

Infiniband update from 1.0 to OFED-1.1 code base

There were several bug fixes in various parts of the kernel. The ongoing
effort to resolve these problems has resulted in a marked improvement
in the reliability and scalability of Red Hat Enterprise Linux 4.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-28" />
        <updated date="2007-04-28" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2873">CVE-2005-2873</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3257">CVE-2005-3257</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-0557">CVE-2006-0557</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1863">CVE-2006-1863</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1592">CVE-2007-1592</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3379">CVE-2007-3379</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304002" comment="kernel is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304003" comment="kernel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304004" comment="kernel-devel is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304005" comment="kernel-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304006" comment="kernel-hugemem is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304007" comment="kernel-hugemem is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304008" comment="kernel-hugemem-devel is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304009" comment="kernel-hugemem-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304010" comment="kernel-smp is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304011" comment="kernel-smp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304012" comment="kernel-smp-devel is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304013" comment="kernel-smp-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304014" comment="kernel-xenU is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304015" comment="kernel-xenU is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304016" comment="kernel-xenU-devel is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304017" comment="kernel-xenU-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304018" comment="kernel-largesmp is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304019" comment="kernel-largesmp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304020" comment="kernel-largesmp-devel is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304021" comment="kernel-largesmp-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhba:tst:20070304022" comment="kernel-doc is earlier than 0:2.6.9-55.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304023" comment="kernel-doc is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhba:def:20070418" version="302" class="patch">
      <metadata>
        <title>RHBA-2007:0418: unzip bug fix update
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        </affected>
        <reference source="RHBA" ref_id="RHBA-2007:0418-02" ref_url="https://rhn.redhat.com/errata/RHBA-2007-0418.html" />
	<description>The unzip utility is used to list, test, or extract files from a zip
archive. 

This update addresses the following issues:

* a TOCTOU bug that could be exploited to change file permissions (CVE-2005-2475)

* a long filename buffer overflow vulnerability (CVE-2005-4667)

All users of unzip should upgrade to these updated packages, which
resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-06-07" />
        <updated date="2007-06-07" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2475">CVE-2005-2475</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4667">CVE-2005-4667</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhba:tst:20070418002" comment="unzip is earlier than 0:5.50-35.EL3" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070418003" comment="unzip is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070001" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0001: openoffice.org security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0001-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0001.html" />
	<description>OpenOffice.org is an office productivity suite that includes desktop
applications such as a word processor, spreadsheet, presentation manager,
formula editor, and drawing program.

Several integer overflow bugs were found in the OpenOffice.org WMF file
processor. An attacker could create a carefully crafted WMF file that could
cause OpenOffice.org to execute arbitrary code when the file was opened by
a victim. (CVE-2006-5870)

All users of OpenOffice.org are advised to upgrade to these updated
packages, which contain a backported fix for this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-03" />
        <updated date="2007-01-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5870">CVE-2006-5870</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001002" comment="openoffice.org is earlier than 0:1.1.2-35.2.0.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001003" comment="openoffice.org is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001004" comment="openoffice.org-i18n is earlier than 0:1.1.2-35.2.0.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001005" comment="openoffice.org-i18n is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001006" comment="openoffice.org-libs is earlier than 0:1.1.2-35.2.0.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001007" comment="openoffice.org-libs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001009" comment="openoffice.org is earlier than 0:1.1.5-6.6.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001003" comment="openoffice.org is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001010" comment="openoffice.org-i18n is earlier than 0:1.1.5-6.6.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001005" comment="openoffice.org-i18n is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001011" comment="openoffice.org-kde is earlier than 0:1.1.5-6.6.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001012" comment="openoffice.org-kde is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001013" comment="openoffice.org-libs is earlier than 0:1.1.5-6.6.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001007" comment="openoffice.org-libs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070002" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0002: XFree86 security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0002-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0002.html" />
	<description>XFree86 is an implementation of the X Window System, which provides the
core functionality for the Linux graphical desktop.

iDefense reported three integer overflow flaws in the XFree86 Render and
DBE extensions. A malicious authorized client could exploit this issue to
cause a denial of service (crash) or potentially execute arbitrary code
with root privileges on the XFree86 server. (CVE-2006-6101, CVE-2006-6102,
CVE-2006-6103)

Users of XFree86 should upgrade to these updated packages, which contain a
backported patch and is not vulnerable to this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-10" />
        <updated date="2007-01-10" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6101">CVE-2006-6101</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6102">CVE-2006-6102</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6103">CVE-2006-6103</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002002" comment="XFree86 is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002003" comment="XFree86 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002004" comment="XFree86-100dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002005" comment="XFree86-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002006" comment="XFree86-75dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002007" comment="XFree86-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002008" comment="XFree86-ISO8859-14-100dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002009" comment="XFree86-ISO8859-14-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002010" comment="XFree86-ISO8859-14-75dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002011" comment="XFree86-ISO8859-14-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002012" comment="XFree86-ISO8859-15-100dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002013" comment="XFree86-ISO8859-15-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002014" comment="XFree86-ISO8859-15-75dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002015" comment="XFree86-ISO8859-15-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002016" comment="XFree86-ISO8859-2-100dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002017" comment="XFree86-ISO8859-2-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002018" comment="XFree86-ISO8859-2-75dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002019" comment="XFree86-ISO8859-2-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002020" comment="XFree86-ISO8859-9-100dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002021" comment="XFree86-ISO8859-9-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002022" comment="XFree86-ISO8859-9-75dpi-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002023" comment="XFree86-ISO8859-9-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002024" comment="XFree86-Mesa-libGL is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002025" comment="XFree86-Mesa-libGL is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002026" comment="XFree86-Mesa-libGLU is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002027" comment="XFree86-Mesa-libGLU is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002028" comment="XFree86-Xnest is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002029" comment="XFree86-Xnest is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002030" comment="XFree86-Xvfb is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002031" comment="XFree86-Xvfb is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002032" comment="XFree86-base-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002033" comment="XFree86-base-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002034" comment="XFree86-cyrillic-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002035" comment="XFree86-cyrillic-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002036" comment="XFree86-devel is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002037" comment="XFree86-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002038" comment="XFree86-doc is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002039" comment="XFree86-doc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002040" comment="XFree86-font-utils is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002041" comment="XFree86-font-utils is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002042" comment="XFree86-libs is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002043" comment="XFree86-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002044" comment="XFree86-libs-data is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002045" comment="XFree86-libs-data is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002046" comment="XFree86-sdk is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002047" comment="XFree86-sdk is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002048" comment="XFree86-syriac-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002049" comment="XFree86-syriac-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002050" comment="XFree86-tools is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002051" comment="XFree86-tools is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002052" comment="XFree86-truetype-fonts is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002053" comment="XFree86-truetype-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002054" comment="XFree86-twm is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002055" comment="XFree86-twm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002056" comment="XFree86-xauth is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002057" comment="XFree86-xauth is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002058" comment="XFree86-xdm is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002059" comment="XFree86-xdm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002060" comment="XFree86-xfs is earlier than 0:4.3.0-115.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002061" comment="XFree86-xfs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070003" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0003: xorg-x11 security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0003-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0003.html" />
	<description>X.org is an open source implementation of the X Window System. It provides
the basic low-level functionality that full-fledged graphical user
interfaces are designed upon.

iDefense reported three integer overflow flaws in the X.org Render and DBE
extensions. A malicious authorized client could exploit this issue to cause
a denial of service (crash) or potentially execute arbitrary code with root
privileges on the X.org server. (CVE-2006-6101, CVE-2006-6102, CVE-2006-6103)

Users of X.org should upgrade to these updated packages, which contain a
backported patch and is not vulnerable to this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-10" />
        <updated date="2007-01-10" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6101">CVE-2006-6101</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6102">CVE-2006-6102</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6103">CVE-2006-6103</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003002" comment="xorg-x11 is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003003" comment="xorg-x11 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003004" comment="xorg-x11-Mesa-libGL is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003005" comment="xorg-x11-Mesa-libGL is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003006" comment="xorg-x11-Mesa-libGLU is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003007" comment="xorg-x11-Mesa-libGLU is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003008" comment="xorg-x11-Xdmx is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003009" comment="xorg-x11-Xdmx is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003010" comment="xorg-x11-Xnest is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003011" comment="xorg-x11-Xnest is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003012" comment="xorg-x11-Xvfb is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003013" comment="xorg-x11-Xvfb is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003014" comment="xorg-x11-deprecated-libs is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003015" comment="xorg-x11-deprecated-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003016" comment="xorg-x11-deprecated-libs-devel is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003017" comment="xorg-x11-deprecated-libs-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003018" comment="xorg-x11-devel is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003019" comment="xorg-x11-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003020" comment="xorg-x11-doc is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003021" comment="xorg-x11-doc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003022" comment="xorg-x11-font-utils is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003023" comment="xorg-x11-font-utils is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003024" comment="xorg-x11-libs is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003025" comment="xorg-x11-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003026" comment="xorg-x11-sdk is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003027" comment="xorg-x11-sdk is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003028" comment="xorg-x11-tools is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003029" comment="xorg-x11-tools is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003030" comment="xorg-x11-twm is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003031" comment="xorg-x11-twm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003032" comment="xorg-x11-xauth is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003033" comment="xorg-x11-xauth is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003034" comment="xorg-x11-xdm is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003035" comment="xorg-x11-xdm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003036" comment="xorg-x11-xfs is earlier than 0:6.8.2-1.EL.13.37.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003037" comment="xorg-x11-xfs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070008" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0008: dbus security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0008-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0008.html" />
	<description>D-BUS is a system for sending messages between applications. It is used
both for the systemwide message bus service, and as a
per-user-login-session messaging facility.

Kimmo Hämäläinen discovered a flaw in the way D-BUS processes certain
messages. It is possible for a local unprivileged D-BUS process to disrupt
the ability of another D-BUS process to receive messages. (CVE-2006-6107)

Users of dbus are advised to upgrade to these updated packages, which
contain backported patches to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-08" />
        <updated date="2007-02-08" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6107">CVE-2006-6107</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008002" comment="dbus is earlier than 0:0.22-12.EL.8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008003" comment="dbus is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008004" comment="dbus-devel is earlier than 0:0.22-12.EL.8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008005" comment="dbus-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008006" comment="dbus-glib is earlier than 0:0.22-12.EL.8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008007" comment="dbus-glib is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008008" comment="dbus-python is earlier than 0:0.22-12.EL.8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008009" comment="dbus-python is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008010" comment="dbus-x11 is earlier than 0:0.22-12.EL.8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070008011" comment="dbus-x11 is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070009" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0009: flash-plugin security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux Extras 3</platform>
        <platform>Red Hat Enterprise Linux Extras 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0009-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0009.html" />
	<description>The flash-plugin package contains a Firefox-compatible Adobe Flash Player
browser plug-in.

A flaw was found in the way the Adobe Flash Player generates HTTP requests.
It was possible for a malicious Adobe Flash file to modify the HTTP header
of the client request, which could be leveraged to exploit certain HTTP proxy
and web server flaws. (CVE-2006-5330)

Users of Adobe Flash Player should upgrade to this updated package, which
contains version 7.0.69 and is not vulnerable to this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-09" />
        <updated date="2007-01-09" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5330">CVE-2006-5330</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:rhel_extras:3</cpe>
        <cpe>cpe://redhat:rhel_extras:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux Extras 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070009002" comment="flash-plugin is earlier than 0:7.0.69-1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070009003" comment="flash-plugin is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux Extras 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070009005" comment="flash-plugin is earlier than 0:7.0.69-1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070009003" comment="flash-plugin is signed with Red Hat master key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070011" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0011: libgsf security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0011-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0011.html" />
	<description>The GNOME Structured File Library is a utility library for reading and
writing structured file formats.

A heap based buffer overflow flaw was found in the way GNOME Structured
File Library processes and certain OLE documents. If an person opened a
specially crafted OLE file, it could cause the client application to crash or
execute arbitrary code. (CVE-2006-4514)

Users of GNOME Structured File Library should upgrade to these updated
packages, which contain a backported patch that resolves this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-11" />
        <updated date="2007-01-11" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4514">CVE-2006-4514</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070011002" comment="libgsf is earlier than 0:1.6.0-7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070011003" comment="libgsf is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070011004" comment="libgsf-devel is earlier than 0:1.6.0-7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070011005" comment="libgsf-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070011007" comment="libgsf is earlier than 0:1.10.1-2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070011003" comment="libgsf is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070011008" comment="libgsf-devel is earlier than 0:1.10.1-2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070011005" comment="libgsf-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070014" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0014: kernel security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0014-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0014.html" />
	<description>The Linux kernel handles the basic functions of the operating system.

These new kernel packages contain fixes for the security issues described
below: 

* a flaw in the get_fdb_entries function of the network bridging support
that allowed a local user to cause a denial of service (crash) or allow a
potential privilege escalation (CVE-2006-5751, Important)

* an information leak in the _block_prepare_write function that allowed a
local user to read kernel memory (CVE-2006-4813, Important)

* an information leak in the copy_from_user() implementation on s390 and
s390x platforms that allowed a local user to read kernel memory
(CVE-2006-5174, Important)

* a flaw in the handling of /proc/net/ip6_flowlabel that allowed a local
user to cause a denial of service (infinite loop) (CVE-2006-5619, Important)

* a flaw in the AIO handling that allowed a local user to cause a denial of
 service (panic) (CVE-2006-5754, Important)

* a race condition in the mincore system core that allowed a local user to
cause a denial of service (system hang) (CVE-2006-4814, Moderate)

* a flaw in the ELF handling on ia64 and sparc architectures which
triggered a cross-region memory mapping and allowed a local user to cause a
denial of service (CVE-2006-4538, Moderate)

* a flaw in the dev_queue_xmit function of the network subsystem that
allowed a local user to cause a denial of service (data corruption)
(CVE-2006-6535, Moderate)

* a flaw in the handling of CAPI messages over Bluetooth that allowed a
remote system to cause a denial of service or potential code execution.
This flaw is only exploitable if a privileged user establishes a connection
to a malicious remote device (CVE-2006-6106, Moderate)

* a flaw in the listxattr system call that allowed a local user to cause a
denial of service (data corruption) or potential privilege escalation. To
successfully exploit this flaw the existence of a bad inode is required
first (CVE-2006-5753, Moderate)

* a flaw in the __find_get_block_slow function that allowed a local
privileged user to cause a denial of service (CVE-2006-5757, Low)

* various flaws in the supported filesystems that allowed a local
privileged user to cause a denial of service (CVE-2006-5823, CVE-2006-6053,
CVE-2006-6054, CVE-2006-6056, Low)

In addition to the security issues described above, fixes for the following
bugs were included:

* initialization error of the tg3 driver with some BCM5703x network card

* a memory leak in the audit subsystem

* x86_64 nmi watchdog timeout is too short

* ext2/3 directory reads fail intermittently

Red Hat would like to thank Dmitriy Monakhov and Kostantin Khorenko for
reporting issues fixed in this erratum.

All Red Hat Enterprise Linux 4 users are advised to upgrade their kernels
to the packages associated with their machine architecture and
configurations as listed in this erratum.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-30" />
        <updated date="2007-01-30" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4538">CVE-2006-4538</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4813">CVE-2006-4813</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4814">CVE-2006-4814</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5174">CVE-2006-5174</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5619">CVE-2006-5619</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5751">CVE-2006-5751</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5753">CVE-2006-5753</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5754">CVE-2006-5754</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5757">CVE-2006-5757</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5823">CVE-2006-5823</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6053">CVE-2006-6053</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6054">CVE-2006-6054</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6056">CVE-2006-6056</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6106">CVE-2006-6106</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6535">CVE-2006-6535</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014002" comment="kernel is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304003" comment="kernel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014004" comment="kernel-devel is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304005" comment="kernel-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014006" comment="kernel-hugemem is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304007" comment="kernel-hugemem is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014008" comment="kernel-hugemem-devel is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304009" comment="kernel-hugemem-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014010" comment="kernel-smp is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304011" comment="kernel-smp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014012" comment="kernel-smp-devel is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304013" comment="kernel-smp-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014014" comment="kernel-largesmp is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304019" comment="kernel-largesmp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014016" comment="kernel-largesmp-devel is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304021" comment="kernel-largesmp-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070014018" comment="kernel-doc is earlier than 0:2.6.9-42.0.8.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304023" comment="kernel-doc is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070015" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0015: ImageMagick security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0015-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0015.html" />
	<description>ImageMagick is an image display and manipulation tool for the X Window
System that can read and write multiple image formats.

Several security flaws were discovered in the way ImageMagick decodes DCM,
PALM, and SGI graphic files.  An attacker may be able to execute arbitrary
code on a victim's machine if they were able to trick the victim into
opening a specially crafted image file (CVE-2006-5456, CVE-2006-5868).

A heap overflow flaw was found in ImageMagick.  An attacker may be able to
execute arbitrary code on a victim's machine if they were able to trick the
victim into opening a specially crafted file (CVE-2006-2440).  This issue
only affected the version of ImageMagick distributed with Red Hat
Enterprise Linux 4.

Users of ImageMagick should upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-15" />
        <updated date="2007-02-15" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-2440">CVE-2006-2440</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5456">CVE-2006-5456</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5868">CVE-2006-5868</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015002" comment="ImageMagick is earlier than 0:5.5.6-24" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015003" comment="ImageMagick is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015004" comment="ImageMagick-c++ is earlier than 0:5.5.6-24" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015005" comment="ImageMagick-c++ is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015006" comment="ImageMagick-c++-devel is earlier than 0:5.5.6-24" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015007" comment="ImageMagick-c++-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015008" comment="ImageMagick-devel is earlier than 0:5.5.6-24" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015009" comment="ImageMagick-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015010" comment="ImageMagick-perl is earlier than 0:5.5.6-24" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015011" comment="ImageMagick-perl is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015013" comment="ImageMagick is earlier than 0:6.0.7.1-16.0.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015003" comment="ImageMagick is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015014" comment="ImageMagick-c++ is earlier than 0:6.0.7.1-16.0.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015005" comment="ImageMagick-c++ is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015015" comment="ImageMagick-c++-devel is earlier than 0:6.0.7.1-16.0.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015007" comment="ImageMagick-c++-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015016" comment="ImageMagick-devel is earlier than 0:6.0.7.1-16.0.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015009" comment="ImageMagick-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015017" comment="ImageMagick-perl is earlier than 0:6.0.7.1-16.0.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070015011" comment="ImageMagick-perl is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070017" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0017: Adobe Acrobat Reader security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux Extras 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0017-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0017.html" />
	<description>The Adobe Acrobat Reader allows users to view and print documents in
portable document format (PDF).

A cross site scripting flaw was found in the way the Adobe Reader Plugin
processes certain malformed URLs. A malicious web page could inject
arbitrary javascript into the browser session which could possibly lead to
a cross site scripting attack. (CVE-2007-0045)

Two arbitrary code execution flaws were found in the way Adobe Reader
processes malformed document files. It may be possible to execute arbitrary
code on a victim's machine if the victim opens a malicious PDF file.
(CVE-2006-5857, CVE-2007-0046)

All users of Acrobat Reader are advised to upgrade to these updated
packages, which contain Acrobat Reader version 7.0.9 and are not vulnerable
to these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-11" />
        <updated date="2007-01-11" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5857">CVE-2006-5857</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0045">CVE-2007-0045</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0046">CVE-2007-0046</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:rhel_extras:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux Extras 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070017002" comment="acroread is earlier than 0:7.0.9-1.2.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070017003" comment="acroread is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070017004" comment="acroread-plugin is earlier than 0:7.0.9-1.2.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070017005" comment="acroread-plugin is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070018" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0018: fetchmail security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0018-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0018.html" />
	<description>Fetchmail is a remote mail retrieval and forwarding utility.

A denial of service flaw was found when Fetchmail was run in multidrop
mode.  A malicious mail server could send a message without headers which
would cause Fetchmail to crash (CVE-2005-4348).  This issue did not affect
the version of Fetchmail shipped with Red Hat Enterprise Linux 2.1 or 3.

A flaw was found in the way Fetchmail used TLS encryption to connect to
remote hosts.  Fetchmail provided no way to enforce the use of TLS
encryption and would not authenticate POP3 protocol connections properly
(CVE-2006-5867).  This update corrects this issue by enforcing TLS
encryption when the "sslproto" configuration directive is set to "tls1".  

Users of Fetchmail should update to these packages, which contain 
backported patches to correct these issues.

Note: This update may break configurations which assumed that Fetchmail
would use plain-text authentication if TLS encryption is not supported by
the POP3 server even if the "sslproto" directive is set to "tls1".  If you
are using a custom configuration that depended on this behavior you will
need to modify your configuration appropriately after installing this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-31" />
        <updated date="2007-01-31" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4348">CVE-2005-4348</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5867">CVE-2006-5867</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070018002" comment="fetchmail is earlier than 0:6.2.0-3.el3.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070018003" comment="fetchmail is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070018005" comment="fetchmail is earlier than 0:6.2.5-6.el4.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070018003" comment="fetchmail is signed with Red Hat master key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070019" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0019: gtk2 security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0019-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0019.html" />
	<description>The gtk2 package contains the GIMP ToolKit (GTK+), a library for creating
graphical user interfaces for the X Window System.

A bug was found in the way the gtk2 GdkPixbufLoader() function processed
invalid input.   Applications linked against gtk2 could crash if they
loaded a malformed image file. (CVE-2007-0010)

Users of gtk2 are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-24" />
        <updated date="2007-01-24" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0010">CVE-2007-0010</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070019002" comment="gtk2 is earlier than 0:2.4.13-22" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070019003" comment="gtk2 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070019004" comment="gtk2-devel is earlier than 0:2.4.13-22" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070019005" comment="gtk2-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070021" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0021: Adobe Acrobat Reader security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux Extras 3</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0021-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0021.html" />
	<description>The Adobe Reader allows users to view and print documents in portable
document format (PDF).

A cross site scripting flaw was found in the way the Adobe Reader Plugin
processes certain malformed URLs. A malicious web page could inject
arbitrary javascript into the browser session which could possibly lead to
a cross site scripting attack. (CVE-2007-0045)

Two arbitrary code execution flaws were found in the way Adobe Reader
processes malformed document files. It may be possible to execute arbitrary
code on a victim's machine if the victim opens a malicious PDF file.
(CVE-2006-5857, CVE-2007-0046)

Please note that Adobe Reader 7.0.9 requires versions of several system
libraries that were not shipped with Red Hat Enterprise Linux 3.  This
update contains additional packages that provide the required system
library versions for Adobe Reader.  These additional packages are only
required by Adobe Reader and do not replace or affect any other aspects of
a Red Hat Enterprise Linux 3 system.

All users of Adobe Reader are advised to upgrade to these updated packages,
which contain Adobe Reader version 7.0.9 and additional libraries to
correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-22" />
        <updated date="2007-01-23" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5857">CVE-2006-5857</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0045">CVE-2007-0045</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0046">CVE-2007-0046</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:rhel_extras:3</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux Extras 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021002" comment="acroread-libs-atk is earlier than 0:1.8.0-1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021003" comment="acroread-libs-atk is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021004" comment="acroread-libs-glib2 is earlier than 0:2.4.7-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021005" comment="acroread-libs-glib2 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021006" comment="acroread-libs-gtk2 is earlier than 0:2.4.13-1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021007" comment="acroread-libs-gtk2 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021008" comment="acroread-libs-gtk2-engines is earlier than 0:2.2.0-1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021009" comment="acroread-libs-gtk2-engines is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021010" comment="acroread-libs-pango is earlier than 0:1.6.0-1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021011" comment="acroread-libs-pango is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021012" comment="acroread is earlier than 0:7.0.9-1.1.1.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070017003" comment="acroread is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070021014" comment="acroread-plugin is earlier than 0:7.0.9-1.1.1.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070017005" comment="acroread-plugin is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070022" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0022: squirrelmail security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0022-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0022.html" />
	<description>SquirrelMail is a standards-based webmail package written in PHP.

Several cross-site scripting bugs were discovered in SquirrelMail.  An
attacker could inject arbitrary Javascript or HTML content into
SquirrelMail pages by tricking a user into visiting a carefully crafted
URL.  (CVE-2006-6142) 

Users of SquirrelMail should upgrade to this erratum package, which
contains a backported patch to correct these issues. 

Notes:
- After installing this update, users are advised to restart their
httpd service to ensure that the updated version functions correctly.
- config.php should NOT be modified, please modify config_local.php instead.
- Known Bug: The configuration generator may potentially produce bad
options that interfere with the operation of this application.  Applying
specific config changes to config_local.php manually is recommended.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-01-31" />
        <updated date="2007-01-31" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6142">CVE-2006-6142</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070022002" comment="squirrelmail is earlier than 0:1.4.8-4.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070022003" comment="squirrelmail is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070022005" comment="squirrelmail is earlier than 0:1.4.8-4.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070022003" comment="squirrelmail is signed with Red Hat master key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070033" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0033: openoffice.org security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0033-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0033.html" />
	<description>OpenOffice.org is an office productivity suite that includes desktop
applications such as a word processor, spreadsheet, presentation manager,
formula editor, and drawing program.

iDefense reported an integer overflow flaw in libwpd, a library used
internally to OpenOffice.org for handling Word Perfect documents.  An
attacker could create a carefully crafted Word Perfect file that could
cause OpenOffice.org to crash or possibly execute arbitrary code if the
file was opened by a victim. (CVE-2007-1466)

John Heasman discovered a stack overflow in the StarCalc parser in
OpenOffice.org.  An attacker could create a carefully crafted StarCalc file
that could cause OpenOffice.org to crash or possibly execute arbitrary code
if the file was opened by a victim. (CVE-2007-0238)

Flaws were discovered in the way OpenOffice.org handled hyperlinks.  An
attacker could create an OpenOffice.org document which could run commands
if a victim opened the file and clicked on a malicious hyperlink. 
(CVE-2007-0239)

All users of OpenOffice.org are advised to upgrade to these updated
packages, which contain backported fixes for these issues.

Red Hat would like to thank Fridrich Štrba for alerting us to the issue
CVE-2007-1466 and providing a patch, and John Heasman for
CVE-2007-0238.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-22" />
        <updated date="2007-03-22" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0238">CVE-2007-0238</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0239">CVE-2007-0239</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1466">CVE-2007-1466</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070033002" comment="openoffice.org is earlier than 0:1.1.2-38.2.0.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001003" comment="openoffice.org is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070033004" comment="openoffice.org-i18n is earlier than 0:1.1.2-38.2.0.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001005" comment="openoffice.org-i18n is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070033006" comment="openoffice.org-libs is earlier than 0:1.1.2-38.2.0.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001007" comment="openoffice.org-libs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070033009" comment="openoffice.org is earlier than 0:1.1.5-10.6.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001003" comment="openoffice.org is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070033010" comment="openoffice.org-i18n is earlier than 0:1.1.5-10.6.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001005" comment="openoffice.org-i18n is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070033011" comment="openoffice.org-kde is earlier than 0:1.1.5-10.6.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001012" comment="openoffice.org-kde is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070033013" comment="openoffice.org-libs is earlier than 0:1.1.5-10.6.0.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070001007" comment="openoffice.org-libs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070044" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0044: bind security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0044-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0044.html" />
	<description>ISC BIND (Berkeley Internet Name Domain) is an implementation of the DNS
(Domain Name System) protocols.  

A flaw was found in the way BIND processed certain DNS query responses.  On
servers that had enabled DNSSEC validation, this could allow an remote
attacker to cause a denial of service.  (CVE-2007-0494)

For users of Red Hat Enterprise Linux 3, the previous BIND update caused an
incompatible change to the default configuration that resulted in rndc not
sharing the key with the named daemon. This update corrects this bug and
restores the behavior prior to that update.

Updating the bind package in Red Hat Enterprise Linux 3 could result in
nonfunctional configuration in case the bind-libs package was not updated.
This update corrects this bug by adding the correct dependency on bind-libs.

Users of BIND are advised to upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-06" />
        <updated date="2007-02-06" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0494">CVE-2007-0494</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044002" comment="bind is earlier than 20:9.2.4-20.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044003" comment="bind is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044004" comment="bind-chroot is earlier than 20:9.2.4-20.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044005" comment="bind-chroot is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044006" comment="bind-devel is earlier than 20:9.2.4-20.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044007" comment="bind-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044008" comment="bind-libs is earlier than 20:9.2.4-20.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044009" comment="bind-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044010" comment="bind-utils is earlier than 20:9.2.4-20.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044011" comment="bind-utils is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044013" comment="bind is earlier than 20:9.2.4-24.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044003" comment="bind is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044014" comment="bind-chroot is earlier than 20:9.2.4-24.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044005" comment="bind-chroot is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044015" comment="bind-devel is earlier than 20:9.2.4-24.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044007" comment="bind-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044016" comment="bind-libs is earlier than 20:9.2.4-24.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044009" comment="bind-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044017" comment="bind-utils is earlier than 20:9.2.4-24.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070044011" comment="bind-utils is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070055" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0055: libwpd security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0055-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0055.html" />
	<description>libwpd is a library for reading and converting Word Perfect documents.

iDefense reported several overflow bugs in libwpd.  An attacker could
create a carefully crafted Word Perfect file that could cause an
application linked with libwpd, such as OpenOffice, to crash or possibly
execute arbitrary code if the file was opened by a victim. (CVE-2007-0002)

All users are advised to upgrade to these updated packages, which contain a
backported fix for this issue.

Red Hat would like to thank Fridrich Štrba for alerting us to these issues
and providing a patch.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-16" />
        <updated date="2007-03-16" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0002">CVE-2007-0002</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1466">CVE-2007-1466</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070055002" comment="libwpd is earlier than 0:0.8.7-3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070055003" comment="libwpd is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070055004" comment="libwpd-tools is earlier than 0:0.8.7-3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070055005" comment="libwpd-tools is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070055006" comment="libwpd-devel is earlier than 0:0.8.7-3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070055007" comment="libwpd-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070057" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0057: bind security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0057-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0057.html" />
	<description>ISC BIND (Berkeley Internet Name Domain) is an implementation of the DNS
(Domain Name System) protocols.  

A flaw was found in the way BIND processed certain DNS query responses. On
servers that had enabled DNSSEC validation, this could allow a remote
attacker to cause a denial of service. (CVE-2007-0494)

A use-after-free flaw was found in BIND. On servers that have recursion
enabled, this could allow a remote attacker to cause a denial of service. 
(CVE-2007-0493)

Users of BIND are advised to upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-14" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0493">CVE-2007-0493</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0494">CVE-2007-0494</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057002" comment="bind is earlier than 30:9.3.3-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057003" comment="bind is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057004" comment="bind-libs is earlier than 30:9.3.3-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057005" comment="bind-libs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057006" comment="bind-sdb is earlier than 30:9.3.3-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057007" comment="bind-sdb is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057008" comment="bind-utils is earlier than 30:9.3.3-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057009" comment="bind-utils is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057010" comment="bind-chroot is earlier than 30:9.3.3-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057011" comment="bind-chroot is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057012" comment="bind-devel is earlier than 30:9.3.3-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057013" comment="bind-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057014" comment="bind-libbind-devel is earlier than 30:9.3.3-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057015" comment="bind-libbind-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057016" comment="caching-nameserver is earlier than 30:9.3.3-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070057017" comment="caching-nameserver is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070060" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0060: samba security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0060-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0060.html" />
	<description>Samba provides file and printer sharing services to SMB/CIFS clients.

A denial of service flaw was found in Samba's smbd daemon process. An
authenticated user could send a specially crafted request which would cause
a smbd child process to enter an infinite loop condition. By opening
multiple CIFS sessions, an attacker could exhaust system resources.
(CVE-2007-0452)

Users of Samba should update to these packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-15" />
        <updated date="2007-02-15" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0452">CVE-2007-0452</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060002" comment="samba is earlier than 0:3.0.9-1.3E.12" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060003" comment="samba is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060004" comment="samba-client is earlier than 0:3.0.9-1.3E.12" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060005" comment="samba-client is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060006" comment="samba-common is earlier than 0:3.0.9-1.3E.12" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060007" comment="samba-common is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060008" comment="samba-swat is earlier than 0:3.0.9-1.3E.12" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060009" comment="samba-swat is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060011" comment="samba is earlier than 0:3.0.10-1.4E.11" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060003" comment="samba is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060012" comment="samba-client is earlier than 0:3.0.10-1.4E.11" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060005" comment="samba-client is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060013" comment="samba-common is earlier than 0:3.0.10-1.4E.11" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060007" comment="samba-common is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060014" comment="samba-swat is earlier than 0:3.0.10-1.4E.11" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060009" comment="samba-swat is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070061" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0061: samba security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0061-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0061.html" />
	<description>Samba provides file and printer sharing services to SMB/CIFS clients.

A denial of service flaw was found in Samba's smbd daemon process. An
authenticated user could send a specially crafted request which would cause
a smbd child process to enter an infinite loop condition. By opening
multiple CIFS sessions, an attacker could exhaust system resources
(CVE-2007-0452).

Users of Samba should update to these packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-14" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0452">CVE-2007-0452</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061002" comment="samba is earlier than 0:3.0.23c-2.el5.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061003" comment="samba is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061004" comment="samba-client is earlier than 0:3.0.23c-2.el5.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061005" comment="samba-client is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061006" comment="samba-common is earlier than 0:3.0.23c-2.el5.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061007" comment="samba-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061008" comment="samba-swat is earlier than 0:3.0.23c-2.el5.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061009" comment="samba-swat is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070062" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0062: java-1.4.2-ibm security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux Extras 3</platform>
        <platform>Red Hat Enterprise Linux Extras 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0062-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0062.html" />
	<description>IBM's 1.4.2 SR7 Java release includes the IBM Java 2 Runtime Environment
and the IBM Java 2 Software Development Kit.

A number of security issues were found:

Vulnerabilities were discovered in the Java Runtime Environment.   An
untrusted applet could use these vulnerabilities to access data from other
applets. (CVE-2006-6736, CVE-2006-6737)

Serialization flaws were discovered in the Java Runtime Environment.  An
untrusted applet or application could use these flaws to elevate its
privileges.  (CVE-2006-6745)

Buffer overflow vulnerabilities were discovered in the Java Runtime
Environment.  An untrusted applet could use these flaws to elevate its
privileges, possibly reading and writing local files or executing local
applications.  (CVE-2006-6731)

Daniel Bleichenbacher discovered an attack on PKCS #1 v1.5 signatures.
Where an RSA key with exponent 3 is used it may be possible for an attacker
to forge a PKCS #1 v1.5 signature that would be incorrectly verified by
implementations that do not check for excess data in the RSA exponentiation
result of the signature.  (CVE-2006-4339)

All users of java-1.4.2-ibm should upgrade to these updated packages, which
contain IBM's 1.4.2 SR7 Java release which resolves these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-07" />
        <updated date="2007-02-07" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4339">CVE-2006-4339</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6731">CVE-2006-6731</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6736">CVE-2006-6736</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6737">CVE-2006-6737</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6745">CVE-2006-6745</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:rhel_extras:3</cpe>
        <cpe>cpe://redhat:rhel_extras:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux Extras 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062002" comment="java-1.4.2-ibm is earlier than 0:1.4.2.7-1jpp.4.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062003" comment="java-1.4.2-ibm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062004" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.7-1jpp.4.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062005" comment="java-1.4.2-ibm-demo is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062006" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.7-1jpp.4.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062007" comment="java-1.4.2-ibm-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062008" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.7-1jpp.4.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062009" comment="java-1.4.2-ibm-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062010" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.7-1jpp.4.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062011" comment="java-1.4.2-ibm-plugin is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062012" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.7-1jpp.4.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062013" comment="java-1.4.2-ibm-src is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux Extras 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062015" comment="java-1.4.2-ibm is earlier than 0:1.4.2.7-1jpp.4.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062003" comment="java-1.4.2-ibm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062016" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.7-1jpp.4.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062005" comment="java-1.4.2-ibm-demo is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062017" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.7-1jpp.4.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062007" comment="java-1.4.2-ibm-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062018" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.7-1jpp.4.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062019" comment="java-1.4.2-ibm-javacomm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062020" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.7-1jpp.4.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062009" comment="java-1.4.2-ibm-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062021" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.7-1jpp.4.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062011" comment="java-1.4.2-ibm-plugin is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062022" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.7-1jpp.4.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062013" comment="java-1.4.2-ibm-src is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070064" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0064: postgresql security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0064-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0064.html" />
	<description>PostgreSQL is an advanced Object-Relational database management system
(DBMS).

A flaw was found in the way the PostgreSQL server handles certain
SQL-language functions. An authenticated user could execute a sequence of
commands which could crash the PostgreSQL server or possibly read from
arbitrary memory locations. A user would need to have permissions to drop
and add database tables to be able to exploit this issue (CVE-2007-0555).

A denial of service flaw was found affecting the PostgreSQL server running
on Red Hat Enterprise Linux 4 systems. An authenticated user could execute
an SQL command which could crash the PostgreSQL server. (CVE-2006-5540)

Users of PostgreSQL should upgrade to these updated packages containing
PostgreSQL version 7.4.16 or 7.3.18, which correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-07" />
        <updated date="2007-02-07" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5540">CVE-2006-5540</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0555">CVE-2007-0555</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064002" comment="rh-postgresql is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064003" comment="rh-postgresql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064004" comment="rh-postgresql-contrib is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064005" comment="rh-postgresql-contrib is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064006" comment="rh-postgresql-devel is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064007" comment="rh-postgresql-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064008" comment="rh-postgresql-docs is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064009" comment="rh-postgresql-docs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064010" comment="rh-postgresql-jdbc is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064011" comment="rh-postgresql-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064012" comment="rh-postgresql-libs is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064013" comment="rh-postgresql-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064014" comment="rh-postgresql-pl is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064015" comment="rh-postgresql-pl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064016" comment="rh-postgresql-python is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064017" comment="rh-postgresql-python is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064018" comment="rh-postgresql-server is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064019" comment="rh-postgresql-server is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064020" comment="rh-postgresql-tcl is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064021" comment="rh-postgresql-tcl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064022" comment="rh-postgresql-test is earlier than 0:7.3.18-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064023" comment="rh-postgresql-test is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064025" comment="postgresql is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064026" comment="postgresql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064027" comment="postgresql-contrib is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064028" comment="postgresql-contrib is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064029" comment="postgresql-devel is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064030" comment="postgresql-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064031" comment="postgresql-docs is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064032" comment="postgresql-docs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064033" comment="postgresql-jdbc is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064034" comment="postgresql-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064035" comment="postgresql-libs is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064036" comment="postgresql-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064037" comment="postgresql-pl is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064038" comment="postgresql-pl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064039" comment="postgresql-python is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064040" comment="postgresql-python is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064041" comment="postgresql-server is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064042" comment="postgresql-server is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064043" comment="postgresql-tcl is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064044" comment="postgresql-tcl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064045" comment="postgresql-test is earlier than 0:7.4.16-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064046" comment="postgresql-test is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070065" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0065: bluez-utils security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0065-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0065.html" />
	<description>The bluez-utils package contains Bluetooth daemons and utilities.

A flaw was found in the Bluetooth HID daemon (hidd). A remote attacker
would have been able to inject keyboard and mouse events via a Bluetooth
connection without any authorization. (CVE-2006-6899)

Note that Red Hat Enterprise Linux does not come with the Bluetooth HID
daemon enabled by default.

Users of bluez-utils are advised to upgrade to these updated packages, which
contains a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-14" />
        <updated date="2007-05-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6899">CVE-2006-6899</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070065002" comment="bluez-utils is earlier than 0:2.10-2.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070065003" comment="bluez-utils is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070065004" comment="bluez-utils-cups is earlier than 0:2.10-2.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070065005" comment="bluez-utils-cups is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070066" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0066: wireshark security update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0066-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0066.html" />
	<description>Wireshark is a program for monitoring network traffic.

Several denial of service bugs were found in Wireshark's LLT, IEEE 802.11,
http, and tcp protocol dissectors. It was possible for Wireshark to crash
or stop responding if it read a malformed packet off the network.
(CVE-2007-0456, CVE-2007-0457, CVE-2007-0458, CVE-2007-0459)

Users of Wireshark should upgrade to these updated packages containing
Wireshark version 0.99.5, which is not vulnerable to these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-14" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0456">CVE-2007-0456</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0457">CVE-2007-0457</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0458">CVE-2007-0458</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0459">CVE-2007-0459</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066002" comment="wireshark is earlier than 0:0.99.5-EL3.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066003" comment="wireshark is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066004" comment="wireshark-gnome is earlier than 0:0.99.5-EL3.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066005" comment="wireshark-gnome is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066007" comment="wireshark is earlier than 0:0.99.5-EL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066003" comment="wireshark is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066008" comment="wireshark-gnome is earlier than 0:0.99.5-EL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066005" comment="wireshark-gnome is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066010" comment="wireshark is earlier than 0:0.99.5-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066011" comment="wireshark is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066012" comment="wireshark-gnome is earlier than 0:0.99.5-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070066013" comment="wireshark-gnome is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070068" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0068: postgresql security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0068-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0068.html" />
	<description>PostgreSQL is an advanced Object-Relational database management system
(DBMS).

Two flaws were found in the way the PostgreSQL server handles certain
SQL-language functions. An authenticated user could execute a sequence of
commands which could crash the PostgreSQL server or possibly read from
arbitrary memory locations. A user would need to have permissions to drop
and add database tables to be able to exploit these issues (CVE-2007-0555,
CVE-2007-0556).

Several denial of service flaws were found in the PostgreSQL server.  An
authenticated user could execute certain SQL commands which could crash the
PostgreSQL server (CVE-2006-5540, CVE-2006-5541, CVE-2006-5542).

Users of PostgreSQL should upgrade to these updated packages containing
PostgreSQL version 8.1.8 which corrects these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-14" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5540">CVE-2006-5540</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5541">CVE-2006-5541</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5542">CVE-2006-5542</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0555">CVE-2007-0555</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0556">CVE-2007-0556</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068002" comment="postgresql is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068003" comment="postgresql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068004" comment="postgresql-contrib is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068005" comment="postgresql-contrib is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068006" comment="postgresql-docs is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068007" comment="postgresql-docs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068008" comment="postgresql-libs is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068009" comment="postgresql-libs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068010" comment="postgresql-python is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068011" comment="postgresql-python is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068012" comment="postgresql-tcl is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068013" comment="postgresql-tcl is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068014" comment="postgresql-devel is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068015" comment="postgresql-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068016" comment="postgresql-pl is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068017" comment="postgresql-pl is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068018" comment="postgresql-server is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068019" comment="postgresql-server is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068020" comment="postgresql-test is earlier than 0:8.1.8-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068021" comment="postgresql-test is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070069" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0069: openoffice.org security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0069-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0069.html" />
	<description>OpenOffice.org is an office productivity suite that includes desktop
applications such as a word processor, spreadsheet, presentation manager,
formula editor, and drawing program.

John Heasman discovered a stack overflow in the StarCalc parser in
OpenOffice.  An attacker could create a carefully crafted StarCalc file
that could cause OpenOffice.org to crash or possibly execute arbitrary code
if the file was opened by a victim. (CVE-2007-0238)

Flaws were discovered in the way OpenOffice.org handled hyperlinks.  An
attacker could create an OpenOffice.org document which could run commands
if a victim opened the file and clicked on a malicious hyperlink. 
(CVE-2007-0239)

All users of OpenOffice.org are advised to upgrade to these updated
packages, which contain a backported fix to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-22" />
        <updated date="2007-03-22" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0238">CVE-2007-0238</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0239">CVE-2007-0239</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069002" comment="openoffice.org is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069003" comment="openoffice.org is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069004" comment="openoffice.org-base is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069005" comment="openoffice.org-base is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069006" comment="openoffice.org-calc is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069007" comment="openoffice.org-calc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069008" comment="openoffice.org-core is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069009" comment="openoffice.org-core is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069010" comment="openoffice.org-draw is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069011" comment="openoffice.org-draw is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069012" comment="openoffice.org-emailmerge is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069013" comment="openoffice.org-emailmerge is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069014" comment="openoffice.org-graphicfilter is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069015" comment="openoffice.org-graphicfilter is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069016" comment="openoffice.org-impress is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069017" comment="openoffice.org-impress is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069018" comment="openoffice.org-javafilter is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069019" comment="openoffice.org-javafilter is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069020" comment="openoffice.org-langpack-af_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069021" comment="openoffice.org-langpack-af_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069022" comment="openoffice.org-langpack-ar is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069023" comment="openoffice.org-langpack-ar is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069024" comment="openoffice.org-langpack-as_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069025" comment="openoffice.org-langpack-as_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069026" comment="openoffice.org-langpack-bg_BG is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069027" comment="openoffice.org-langpack-bg_BG is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069028" comment="openoffice.org-langpack-bn is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069029" comment="openoffice.org-langpack-bn is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069030" comment="openoffice.org-langpack-ca_ES is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069031" comment="openoffice.org-langpack-ca_ES is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069032" comment="openoffice.org-langpack-cs_CZ is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069033" comment="openoffice.org-langpack-cs_CZ is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069034" comment="openoffice.org-langpack-cy_GB is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069035" comment="openoffice.org-langpack-cy_GB is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069036" comment="openoffice.org-langpack-da_DK is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069037" comment="openoffice.org-langpack-da_DK is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069038" comment="openoffice.org-langpack-de is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069039" comment="openoffice.org-langpack-de is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069040" comment="openoffice.org-langpack-el_GR is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069041" comment="openoffice.org-langpack-el_GR is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069042" comment="openoffice.org-langpack-es is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069043" comment="openoffice.org-langpack-es is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069044" comment="openoffice.org-langpack-et_EE is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069045" comment="openoffice.org-langpack-et_EE is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069046" comment="openoffice.org-langpack-eu_ES is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069047" comment="openoffice.org-langpack-eu_ES is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069048" comment="openoffice.org-langpack-fi_FI is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069049" comment="openoffice.org-langpack-fi_FI is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069050" comment="openoffice.org-langpack-fr is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069051" comment="openoffice.org-langpack-fr is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069052" comment="openoffice.org-langpack-ga_IE is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069053" comment="openoffice.org-langpack-ga_IE is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069054" comment="openoffice.org-langpack-gl_ES is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069055" comment="openoffice.org-langpack-gl_ES is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069056" comment="openoffice.org-langpack-gu_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069057" comment="openoffice.org-langpack-gu_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069058" comment="openoffice.org-langpack-he_IL is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069059" comment="openoffice.org-langpack-he_IL is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069060" comment="openoffice.org-langpack-hi_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069061" comment="openoffice.org-langpack-hi_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069062" comment="openoffice.org-langpack-hr_HR is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069063" comment="openoffice.org-langpack-hr_HR is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069064" comment="openoffice.org-langpack-hu_HU is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069065" comment="openoffice.org-langpack-hu_HU is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069066" comment="openoffice.org-langpack-it is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069067" comment="openoffice.org-langpack-it is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069068" comment="openoffice.org-langpack-ja_JP is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069069" comment="openoffice.org-langpack-ja_JP is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069070" comment="openoffice.org-langpack-kn_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069071" comment="openoffice.org-langpack-kn_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069072" comment="openoffice.org-langpack-ko_KR is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069073" comment="openoffice.org-langpack-ko_KR is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069074" comment="openoffice.org-langpack-lt_LT is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069075" comment="openoffice.org-langpack-lt_LT is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069076" comment="openoffice.org-langpack-ml_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069077" comment="openoffice.org-langpack-ml_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069078" comment="openoffice.org-langpack-mr_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069079" comment="openoffice.org-langpack-mr_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069080" comment="openoffice.org-langpack-ms_MY is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069081" comment="openoffice.org-langpack-ms_MY is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069082" comment="openoffice.org-langpack-nb_NO is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069083" comment="openoffice.org-langpack-nb_NO is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069084" comment="openoffice.org-langpack-nl is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069085" comment="openoffice.org-langpack-nl is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069086" comment="openoffice.org-langpack-nn_NO is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069087" comment="openoffice.org-langpack-nn_NO is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069088" comment="openoffice.org-langpack-nr_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069089" comment="openoffice.org-langpack-nr_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069090" comment="openoffice.org-langpack-nso_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069091" comment="openoffice.org-langpack-nso_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069092" comment="openoffice.org-langpack-or_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069093" comment="openoffice.org-langpack-or_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069094" comment="openoffice.org-langpack-pa_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069095" comment="openoffice.org-langpack-pa_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069096" comment="openoffice.org-langpack-pl_PL is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069097" comment="openoffice.org-langpack-pl_PL is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069098" comment="openoffice.org-langpack-pt_BR is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069099" comment="openoffice.org-langpack-pt_BR is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069100" comment="openoffice.org-langpack-pt_PT is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069101" comment="openoffice.org-langpack-pt_PT is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069102" comment="openoffice.org-langpack-ru is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069103" comment="openoffice.org-langpack-ru is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069104" comment="openoffice.org-langpack-sk_SK is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069105" comment="openoffice.org-langpack-sk_SK is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069106" comment="openoffice.org-langpack-sl_SI is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069107" comment="openoffice.org-langpack-sl_SI is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069108" comment="openoffice.org-langpack-sr_CS is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069109" comment="openoffice.org-langpack-sr_CS is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069110" comment="openoffice.org-langpack-ss_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069111" comment="openoffice.org-langpack-ss_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069112" comment="openoffice.org-langpack-st_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069113" comment="openoffice.org-langpack-st_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069114" comment="openoffice.org-langpack-sv is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069115" comment="openoffice.org-langpack-sv is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069116" comment="openoffice.org-langpack-ta_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069117" comment="openoffice.org-langpack-ta_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069118" comment="openoffice.org-langpack-te_IN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069119" comment="openoffice.org-langpack-te_IN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069120" comment="openoffice.org-langpack-th_TH is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069121" comment="openoffice.org-langpack-th_TH is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069122" comment="openoffice.org-langpack-tn_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069123" comment="openoffice.org-langpack-tn_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069124" comment="openoffice.org-langpack-tr_TR is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069125" comment="openoffice.org-langpack-tr_TR is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069126" comment="openoffice.org-langpack-ts_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069127" comment="openoffice.org-langpack-ts_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069128" comment="openoffice.org-langpack-ur is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069129" comment="openoffice.org-langpack-ur is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069130" comment="openoffice.org-langpack-ve_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069131" comment="openoffice.org-langpack-ve_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069132" comment="openoffice.org-langpack-xh_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069133" comment="openoffice.org-langpack-xh_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069134" comment="openoffice.org-langpack-zh_CN is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069135" comment="openoffice.org-langpack-zh_CN is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069136" comment="openoffice.org-langpack-zh_TW is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069137" comment="openoffice.org-langpack-zh_TW is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069138" comment="openoffice.org-langpack-zu_ZA is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069139" comment="openoffice.org-langpack-zu_ZA is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069140" comment="openoffice.org-math is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069141" comment="openoffice.org-math is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069142" comment="openoffice.org-pyuno is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069143" comment="openoffice.org-pyuno is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069144" comment="openoffice.org-testtools is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069145" comment="openoffice.org-testtools is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069146" comment="openoffice.org-writer is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069147" comment="openoffice.org-writer is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069148" comment="openoffice.org-xsltfilter is earlier than 1:2.0.4-5.4.17.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070069149" comment="openoffice.org-xsltfilter is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070073" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0073: java-1.5.0-ibm security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux Extras 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0073-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0073.html" />
	<description>IBM's 1.5.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

Vulnerabilities were discovered in the Java Runtime Environment. An
untrusted applet could use these vulnerabilities to access data from other
applets. (CVE-2006-6736, CVE-2006-6737)

Serialization flaws were discovered in the Java Runtime Environment. An
untrusted applet or application could use these flaws to elevate its
privileges. (CVE-2006-6745)

Buffer overflow vulnerabilities were discovered in the Java Runtime
Environment. An untrusted applet could use these flaws to elevate its
privileges, possibly reading and writing local files or executing local
applications. (CVE-2006-6731)

Daniel Bleichenbacher discovered an attack on PKCS #1 v1.5 signatures.
Where an RSA key with exponent 3 is used it may be possible for an attacker
to forge a PKCS #1 v1.5 signature that would be incorrectly verified by
implementations that do not check for excess data in the RSA exponentiation
result of the signature. (CVE-2006-4339) 

All users of java-ibm-1.5.0 should upgrade to these packages, which contain
IBM's 1.5.0 SR3 Java release which resolves these issues.

Please note that the packages in this erratum are identical to those we
released on January 24th 2007 in advisory RHEA-2007:0027.  We have issued
this security update because when we released RHEA-2007:0027 we were not
aware that it contained fixes for security issues.  If you have already
updated to those packages you will not need to apply this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-09" />
        <updated date="2007-02-09" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4339">CVE-2006-4339</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6731">CVE-2006-6731</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6736">CVE-2006-6736</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6737">CVE-2006-6737</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6745">CVE-2006-6745</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:rhel_extras:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux Extras 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073002" comment="java-1.5.0-ibm is earlier than 1:1.5.0.3-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073003" comment="java-1.5.0-ibm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073004" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.3-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073005" comment="java-1.5.0-ibm-demo is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073006" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.3-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073007" comment="java-1.5.0-ibm-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073008" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.3-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073009" comment="java-1.5.0-ibm-javacomm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073010" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.3-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073011" comment="java-1.5.0-ibm-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073012" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.3-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073013" comment="java-1.5.0-ibm-plugin is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073014" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.3-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073015" comment="java-1.5.0-ibm-src is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070074" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0074: spamassassin security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0074-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0074.html" />
	<description>SpamAssassin provides a way to reduce unsolicited commercial email (spam)
from incoming email.

A flaw was found in the way SpamAssassin processes HTML email containing
URIs. A carefully crafted mail message could cause SpamAssassin to consume
significant resources. If a number of these messages are sent, this could
lead to a denial of service, potentially delaying or preventing the
delivery  of email.
(CVE-2007-0451)

Users of SpamAssassin should upgrade to these updated packages which
contain version 3.1.8 which is not vulnerable to these issues.  

This is an upgrade from SpamAssassin version 3.0.6 to 3.1.8, which contains
many bug fixes and spam detection enhancements. Further details are
available in the SpamAssassin 3.1 changelog and upgrade guide.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-21" />
        <updated date="2007-02-21" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0451">CVE-2007-0451</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070074002" comment="spamassassin is earlier than 0:3.1.8-2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070074003" comment="spamassassin is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070075" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0075: spamassassin security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0075-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0075.html" />
	<description>SpamAssassin provides a way to reduce unsolicited commercial email (spam)
from incoming email.

A flaw was found in the way SpamAssassin processes HTML email containing
URIs. A carefully crafted mail message could cause SpamAssassin to consume
significant resources. If a number of these messages are sent, this could
lead to a denial of service, potentially delaying or preventing the
delivery  of email. (CVE-2007-0451)

Users of SpamAssassin should upgrade to these updated packages which
contain version 3.1.8 which is not vulnerable to these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-13" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0451">CVE-2007-0451</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070075002" comment="spamassassin is earlier than 0:3.1.8-2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070075003" comment="spamassassin is signed with Red Hat redhatrelease key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070076" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0076: php security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0076-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0076.html" />
	<description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Web server. 

A number of buffer overflow flaws were found in the PHP session extension,
the str_replace() function, and the imap_mail_compose() function.
If very long strings under the control of an attacker are passed to the
str_replace() function then an integer overflow could occur in memory
allocation.  If a script uses the imap_mail_compose() function to create a
new MIME message based on an input body from an untrusted source, it could
result in a heap overflow.  An attacker who is able to access a PHP
application affected by any these issues could trigger these flaws and
possibly execute arbitrary code as the 'apache' user. (CVE-2007-0906)

If unserializing untrusted data on 64-bit platforms, the zend_hash_init()
function can be forced to enter an infinite loop, consuming CPU resources
for a limited length of time, until the script timeout alarm aborts
execution of the script. (CVE-2007-0988)

If the wddx extension is used to import WDDX data from an untrusted source,
certain WDDX input packets may allow a random portion of heap memory to be
exposed. (CVE-2007-0908)

If the odbc_result_all() function is used to display data from a database,
and the contents of the database table are under the control of an
attacker, a format string vulnerability is possible which could lead to the
execution of arbitrary code.  (CVE-2007-0909)

A one byte memory read will always occur before the beginning of a buffer,
which could be triggered for example by any use of the header() function in
a script.  However it is unlikely that this would have any effect.
(CVE-2007-0907)

Several flaws in PHP could allows attackers to "clobber" certain
super-global variables via unspecified vectors. (CVE-2007-0910)

Users of PHP should upgrade to these updated packages which contain
backported patches to correct these issues.

Red Hat would like to thank Stefan Esser for his help diagnosing these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-19" />
        <updated date="2007-02-19" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0906">CVE-2007-0906</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0907">CVE-2007-0907</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0908">CVE-2007-0908</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0909">CVE-2007-0909</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0910">CVE-2007-0910</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0988">CVE-2007-0988</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1380">CVE-2007-1380</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1701">CVE-2007-1701</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1825">CVE-2007-1825</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076002" comment="php is earlier than 0:4.3.2-39.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076003" comment="php is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076004" comment="php-devel is earlier than 0:4.3.2-39.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076005" comment="php-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076006" comment="php-imap is earlier than 0:4.3.2-39.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076007" comment="php-imap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076008" comment="php-ldap is earlier than 0:4.3.2-39.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076009" comment="php-ldap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076010" comment="php-mysql is earlier than 0:4.3.2-39.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076011" comment="php-mysql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076012" comment="php-odbc is earlier than 0:4.3.2-39.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076013" comment="php-odbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076014" comment="php-pgsql is earlier than 0:4.3.2-39.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076015" comment="php-pgsql is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076017" comment="php is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076003" comment="php is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076018" comment="php-devel is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076005" comment="php-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076019" comment="php-domxml is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076020" comment="php-domxml is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076021" comment="php-gd is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076022" comment="php-gd is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076023" comment="php-imap is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076007" comment="php-imap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076024" comment="php-ldap is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076009" comment="php-ldap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076025" comment="php-mbstring is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076026" comment="php-mbstring is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076027" comment="php-mysql is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076011" comment="php-mysql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076028" comment="php-ncurses is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076029" comment="php-ncurses is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076030" comment="php-odbc is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076013" comment="php-odbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076031" comment="php-pear is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076032" comment="php-pear is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076033" comment="php-pgsql is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076015" comment="php-pgsql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076034" comment="php-snmp is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076035" comment="php-snmp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076036" comment="php-xmlrpc is earlier than 0:4.3.9-3.22.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076037" comment="php-xmlrpc is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070077" version="304" class="patch">
      <metadata>
        <title>RHSA-2007:0077: seamonkey security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0077-04" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0077.html" />
	<description>SeaMonkey is an open source Web browser, advanced email and newsgroup
client, IRC chat client, and HTML editor.

Several flaws were found in the way SeaMonkey processed certain malformed
JavaScript code. A malicious web page could execute JavaScript code in such
a way that may result in SeaMonkey crashing or executing arbitrary code as
the user running SeaMonkey. (CVE-2007-0775, CVE-2007-0777)

Several cross-site scripting (XSS) flaws were found in the way SeaMonkey
processed certain malformed web pages. A malicious web page could display
misleading information which may result in a user unknowingly divulging
sensitive information such as a password. (CVE-2006-6077, CVE-2007-0995,
CVE-2007-0996)

A flaw was found in the way SeaMonkey cached web pages on the local disk. A
malicious web page may be able to inject arbitrary HTML into a browsing
session if the user reloads a targeted site. (CVE-2007-0778)

A flaw was found in the way SeaMonkey displayed certain web content. A
malicious web page could generate content which could overlay user
interface elements such as the hostname and security indicators, tricking a
user into thinking they are visiting a different site. (CVE-2007-0779)

Two flaws were found in the way SeaMonkey displayed blocked popup windows.
If a user can be convinced to open a blocked popup, it is possible to read
arbitrary local files, or conduct an XSS attack against the user.
(CVE-2007-0780, CVE-2007-0800)

Two buffer overflow flaws were found in the Network Security Services (NSS)
code for processing the SSLv2 protocol. Connecting to a malicious secure
web server could cause the execution of arbitrary code as the user running
SeaMonkey. (CVE-2007-0008, CVE-2007-0009)

A flaw was found in the way SeaMonkey handled the "location.hostname" value
during certain browser domain checks. This flaw could allow a malicious web
site to set domain cookies for an arbitrary site, or possibly perform an
XSS attack. (CVE-2007-0981)

Users of SeaMonkey are advised to upgrade to these erratum packages, which
contain SeaMonkey version 1.0.8 that corrects these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-23" />
        <updated date="2007-03-13" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6077">CVE-2006-6077</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0008">CVE-2007-0008</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0009">CVE-2007-0009</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0775">CVE-2007-0775</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0777">CVE-2007-0777</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0778">CVE-2007-0778</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0779">CVE-2007-0779</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0780">CVE-2007-0780</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0800">CVE-2007-0800</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0981">CVE-2007-0981</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0994">CVE-2007-0994</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0995">CVE-2007-0995</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0996">CVE-2007-0996</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1092">CVE-2007-1092</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1282">CVE-2007-1282</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077002" comment="seamonkey is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077003" comment="seamonkey is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077004" comment="seamonkey-chat is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077005" comment="seamonkey-chat is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077006" comment="seamonkey-devel is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077007" comment="seamonkey-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077008" comment="seamonkey-dom-inspector is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077009" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077010" comment="seamonkey-js-debugger is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077011" comment="seamonkey-js-debugger is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077012" comment="seamonkey-mail is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077013" comment="seamonkey-mail is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077014" comment="seamonkey-nspr is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077015" comment="seamonkey-nspr is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077016" comment="seamonkey-nspr-devel is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077017" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077018" comment="seamonkey-nss is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077019" comment="seamonkey-nss is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077020" comment="seamonkey-nss-devel is earlier than 0:1.0.8-0.2.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077021" comment="seamonkey-nss-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077023" comment="devhelp is earlier than 0:0.10-0.7.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077024" comment="devhelp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077025" comment="seamonkey is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077003" comment="seamonkey is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077026" comment="devhelp-devel is earlier than 0:0.10-0.7.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077027" comment="devhelp-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077028" comment="seamonkey-chat is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077005" comment="seamonkey-chat is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077029" comment="seamonkey-devel is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077007" comment="seamonkey-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077030" comment="seamonkey-dom-inspector is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077009" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077031" comment="seamonkey-js-debugger is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077011" comment="seamonkey-js-debugger is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077032" comment="seamonkey-mail is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077013" comment="seamonkey-mail is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077033" comment="seamonkey-nspr is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077015" comment="seamonkey-nspr is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077034" comment="seamonkey-nspr-devel is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077017" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077035" comment="seamonkey-nss is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077019" comment="seamonkey-nss is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077036" comment="seamonkey-nss-devel is earlier than 0:1.0.8-0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070077021" comment="seamonkey-nss-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070078" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0078: thunderbird security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0078-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0078.html" />
	<description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the way Thunderbird processed certain malformed
JavaScript code. A malicious HTML mail message could execute JavaScript
code in such a way that may result in Thunderbird crashing or executing
arbitrary code as the user running Thunderbird. JavaScript support is
disabled by default in Thunderbird; these issues are not exploitable unless
the user has enabled JavaScript. (CVE-2007-0775, CVE-2007-0777, CVE-2007-1092)

A flaw was found in the way Thunderbird processed text/enhanced and
text/richtext formatted mail message. A specially crafted mail message
could execute arbitrary code with the privileges of the user running
Thunderbird. (CVE-2007-1282)

Several cross-site scripting (XSS) flaws were found in the way Thunderbird
processed certain malformed HTML mail messages. A malicious HTML mail
message could display misleading information which may result in a user
unknowingly divulging sensitive information such as a password.
(CVE-2006-6077, CVE-2007-0995, CVE-2007-0996)

A flaw was found in the way Thunderbird cached web content on the local
disk. A malicious HTML mail message may be able to inject arbitrary HTML
into a browsing session if the user reloads a targeted site. (CVE-2007-0778)

A flaw was found in the way Thunderbird displayed certain web content. A
malicious HTML mail message could generate content which could overlay user
interface elements such as the hostname and security indicators, tricking a
user into thinking they are visiting a different site. (CVE-2007-0779)

Two flaws were found in the way Thunderbird displayed blocked popup
windows. If a user can be convinced to open a blocked popup, it is possible
to read arbitrary local files, or conduct an XSS attack against the user.
(CVE-2007-0780, CVE-2007-0800)

Two buffer overflow flaws were found in the Network Security Services (NSS)
code for processing the SSLv2 protocol. Connecting to a malicious secure
web server could cause the execution of arbitrary code as the user running
Thunderbird. (CVE-2007-0008, CVE-2007-0009)

A flaw was found in the way Thunderbird handled the "location.hostname"
value during certain browser domain checks. This flaw could allow a
malicious HTML mail message to set domain cookies for an arbitrary site, or
possibly perform an XSS attack. (CVE-2007-0981)

Users of Thunderbird are advised to apply this update, which contains
Thunderbird version 1.5.0.10 that corrects these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-02" />
        <updated date="2007-04-10" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6077">CVE-2006-6077</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0008">CVE-2007-0008</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0009">CVE-2007-0009</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0775">CVE-2007-0775</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0777">CVE-2007-0777</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0778">CVE-2007-0778</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0779">CVE-2007-0779</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0780">CVE-2007-0780</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0800">CVE-2007-0800</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0981">CVE-2007-0981</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0995">CVE-2007-0995</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0996">CVE-2007-0996</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1092">CVE-2007-1092</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1282">CVE-2007-1282</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070078002" comment="thunderbird is earlier than 0:1.5.0.10-0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070078003" comment="thunderbird is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070079" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0079: Firefox security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0079-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0079.html" />
	<description>Mozilla Firefox is an open source Web browser.

Several flaws were found in the way Firefox processed certain malformed
JavaScript code. A malicious web page could execute JavaScript code in such
a way that may result in Firefox crashing or executing arbitrary code as
the user running Firefox. (CVE-2007-0775, CVE-2007-0777)

Several cross-site scripting (XSS) flaws were found in the way Firefox
processed certain malformed web pages. A malicious web page could display
misleading information which may result in a user unknowingly divulging
sensitive information such as a password. (CVE-2006-6077, CVE-2007-0995,
CVE-2007-0996)

A flaw was found in the way Firefox cached web pages on the local disk. A
malicious web page may be able to inject arbitrary HTML into a browsing
session if the user reloads a targeted site. (CVE-2007-0778)

A flaw was found in the way Firefox displayed certain web content. A
malicious web page could generate content which could overlay user
interface elements such as the hostname and security indicators, tricking a
user into thinking they are visiting a different site. (CVE-2007-0779)

Two flaws were found in the way Firefox displayed blocked popup windows. If
a user can be convinced to open a blocked popup, it is possible to read
arbitrary local files, or conduct an XSS attack against the user.
(CVE-2007-0780, CVE-2007-0800)

Two buffer overflow flaws were found in the Network Security Services (NSS)
code for processing the SSLv2 protocol. Connecting to a malicious secure
web server could cause the execution of arbitrary code as the user running
Firefox. (CVE-2007-0008, CVE-2007-0009)

A flaw was found in the way Firefox handled the "location.hostname" value
during certain browser domain checks. This flaw could allow a malicious web
site to set domain cookies for an arbitrary site, or possibly perform an
XSS attack. (CVE-2007-0981)

Users of Firefox are advised to upgrade to these erratum packages, which
contain Firefox version 1.5.0.10 that corrects these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-23" />
        <updated date="2007-02-23" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6077">CVE-2006-6077</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0008">CVE-2007-0008</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0009">CVE-2007-0009</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0775">CVE-2007-0775</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0777">CVE-2007-0777</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0778">CVE-2007-0778</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0779">CVE-2007-0779</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0780">CVE-2007-0780</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0800">CVE-2007-0800</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0981">CVE-2007-0981</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0994">CVE-2007-0994</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0995">CVE-2007-0995</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0996">CVE-2007-0996</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1092">CVE-2007-1092</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070079002" comment="firefox is earlier than 0:1.5.0.10-0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070079003" comment="firefox is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070082" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0082: php security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0082-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0082.html" />
	<description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Web server. 

A number of buffer overflow flaws were found in the PHP session extension;
the str_replace() function; and the imap_mail_compose() function. If very
long strings were passed to the str_replace() function, an integer
overflow could occur in memory allocation. If a script used the
imap_mail_compose() function to create a new MIME message based on an
input body from an untrusted source, it could result in a heap overflow.
An attacker with access to a PHP application affected by any these issues
could trigger the flaws and possibly execute arbitrary code as the
'apache' user. (CVE-2007-0906)

When unserializing untrusted data on 64-bit platforms, the
zend_hash_init() function could be forced into an infinite loop, consuming
CPU resources for a limited time, until the script timeout alarm aborted
execution of the script. (CVE-2007-0988)

If the wddx extension was used to import WDDX data from an untrusted
source, certain WDDX input packets could expose a random portion of heap
memory. (CVE-2007-0908)

If the odbc_result_all() function was used to display data from a
database, and the database table contents were under an attacker's
control, a format string vulnerability was possible which could allow
arbitrary code execution. (CVE-2007-0909)

A one byte memory read always occurs before the beginning of a buffer.
This could be triggered, for example, by any use of the header() function
in a script. However it is unlikely that this would have any effect.
(CVE-2007-0907)

Several flaws in PHP could allow attackers to "clobber" certain
super-global variables via unspecified vectors. (CVE-2007-0910)

An input validation bug allowed a remote attacker to trigger a denial of
service attack by submitting an input variable with a deeply-nested-array.
(CVE-2007-1285)

Users of PHP should upgrade to these updated packages which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-13" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0906">CVE-2007-0906</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0907">CVE-2007-0907</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0908">CVE-2007-0908</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0909">CVE-2007-0909</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0988">CVE-2007-0988</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0910">CVE-2007-0910</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1285">CVE-2007-1285</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1380">CVE-2007-1380</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1701">CVE-2007-1701</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1825">CVE-2007-1825</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082002" comment="php is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082003" comment="php is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082004" comment="php-bcmath is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082005" comment="php-bcmath is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082006" comment="php-cli is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082007" comment="php-cli is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082008" comment="php-common is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082009" comment="php-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082010" comment="php-dba is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082011" comment="php-dba is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082012" comment="php-devel is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082013" comment="php-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082014" comment="php-gd is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082015" comment="php-gd is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082016" comment="php-imap is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082017" comment="php-imap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082018" comment="php-ldap is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082019" comment="php-ldap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082020" comment="php-mbstring is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082021" comment="php-mbstring is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082022" comment="php-mysql is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082023" comment="php-mysql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082024" comment="php-ncurses is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082025" comment="php-ncurses is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082026" comment="php-odbc is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082027" comment="php-odbc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082028" comment="php-pdo is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082029" comment="php-pdo is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082030" comment="php-pgsql is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082031" comment="php-pgsql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082032" comment="php-snmp is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082033" comment="php-snmp is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082034" comment="php-soap is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082035" comment="php-soap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082036" comment="php-xml is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082037" comment="php-xml is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082038" comment="php-xmlrpc is earlier than 0:5.1.6-7.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082039" comment="php-xmlrpc is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070085" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0085: kernel security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0085-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0085.html" />
	<description>The Linux kernel handles the basic functions of the operating system.

These new kernel packages contain fixes for two security issues:

* a flaw in the key serial number collision avoidance algorithm of the
keyctl subsystem that allowed a local user to cause a denial of service
(CVE-2007-0006, Important)

* a flaw in the file watch implementation of the audit subsystems that
allowed a local user to cause a denial of service (panic). To exploit this
flaw a privileged user must have previously created a watch for a file 
(CVE-2007-0001, Moderate)

In addition to the security issues described above, a fix for the SCTP
subsystem to address a system crash which may be experienced in Telco
environments has been included.

Red Hat Enterprise Linux 4 users are advised to upgrade their kernels to
the packages associated with their machine architecture and configurations
as listed in this erratum.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-27" />
        <updated date="2007-02-27" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0001">CVE-2007-0001</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0006">CVE-2007-0006</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085002" comment="kernel is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304003" comment="kernel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085004" comment="kernel-devel is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304005" comment="kernel-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085006" comment="kernel-hugemem is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304007" comment="kernel-hugemem is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085008" comment="kernel-hugemem-devel is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304009" comment="kernel-hugemem-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085010" comment="kernel-smp is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304011" comment="kernel-smp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085012" comment="kernel-smp-devel is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304013" comment="kernel-smp-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085014" comment="kernel-largesmp is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304019" comment="kernel-largesmp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085016" comment="kernel-largesmp-devel is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304021" comment="kernel-largesmp-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070085018" comment="kernel-doc is earlier than 0:2.6.9-42.0.10.EL" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070304023" comment="kernel-doc is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070086" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0086: gnomemeeting security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0086-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0086.html" />
	<description>GnomeMeeting is a tool to communicate with video and audio over the Internet.

A format string flaw was found in the way GnomeMeeting processes certain
messages. If a user is running GnomeMeeting, a remote attacker who can
connect to GnomeMeeting could trigger this flaw and potentially execute
arbitrary code with the privileges of the user. (CVE-2007-1007)

Users of GnomeMeeting should upgrade to these updated packages which
contain a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-02-20" />
        <updated date="2007-02-20" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1007">CVE-2007-1007</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070086002" comment="gnomemeeting is earlier than 0:0.96.0-5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070086003" comment="gnomemeeting is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070086005" comment="gnomemeeting is earlier than 0:1.0.2-9" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070086003" comment="gnomemeeting is signed with Red Hat master key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070087" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0087: ekiga security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0087-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0087.html" />
	<description>Ekiga is a tool to communicate with video and audio over the Internet.

Format string flaws were found in the way Ekiga processes certain messages.
If a user is running Ekiga, a remote attacker who can connect to Ekiga
could trigger this flaw and potentially execute arbitrary code with the
privileges of the user. (CVE-2007-0999, CVE-2007-1006)

Users of Ekiga should upgrade to these updated packages which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-13" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0999">CVE-2007-0999</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1006">CVE-2007-1006</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070087002" comment="ekiga is earlier than 0:2.0.2-7.0.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070087003" comment="ekiga is signed with Red Hat redhatrelease key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070095" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0095: krb5 security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0095-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0095.html" />
	<description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other through use of symmetric encryption
and a trusted third party, the KDC.

A flaw was found in the username handling of the MIT krb5 telnet daemon
(telnetd).  A remote attacker who can access the telnet port of a target
machine could log in as root without requiring a password.  (CVE-2007-0956)

Note that the krb5 telnet daemon is not enabled by default in any version
of Red Hat Enterprise Linux.  In addition, the default firewall rules block
remote access to the telnet port.  This flaw does not affect the telnet
daemon distributed in the telnet-server package.

For users who have enabled the krb5 telnet daemon and have it accessible
remotely, this update should be applied immediately.  

Whilst we are not aware at this time that the flaw is being actively
exploited, we have confirmed that the flaw is very easily exploitable.

This update also fixes two additional security issues:

Buffer overflows were found which affect the Kerberos KDC and the kadmin
server daemon.  A remote attacker who can access the KDC could exploit this
bug to run arbitrary code with the privileges of the KDC or kadmin server
processes.  (CVE-2007-0957)

A double-free flaw was found in the GSSAPI library used by the kadmin
server daemon.  Red Hat Enterprise Linux 4 and 5 contain checks within
glibc that detect double-free flaws. Therefore, on Red Hat Enterprise Linux
4 and 5 successful exploitation of this issue can only lead to a denial of
service.  Applications which use this library in earlier releases of Red
Hat Enterprise Linux may also be affected.  (CVE-2007-1216)

All users are advised to update to these erratum packages which contain a
backported fix to correct these issues.

Red Hat would like to thank MIT and iDefense for reporting these
vulnerabilities.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-03" />
        <updated date="2007-04-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0956">CVE-2007-0956</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0957">CVE-2007-0957</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1216">CVE-2007-1216</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095002" comment="krb5 is earlier than 0:1.2.7-61" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095003" comment="krb5 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095004" comment="krb5-devel is earlier than 0:1.2.7-61" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095005" comment="krb5-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095006" comment="krb5-libs is earlier than 0:1.2.7-61" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095007" comment="krb5-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095008" comment="krb5-server is earlier than 0:1.2.7-61" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095009" comment="krb5-server is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095010" comment="krb5-workstation is earlier than 0:1.2.7-61" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095011" comment="krb5-workstation is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095013" comment="krb5 is earlier than 0:1.3.4-46" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095003" comment="krb5 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095014" comment="krb5-devel is earlier than 0:1.3.4-46" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095005" comment="krb5-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095015" comment="krb5-libs is earlier than 0:1.3.4-46" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095007" comment="krb5-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095016" comment="krb5-server is earlier than 0:1.3.4-46" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095009" comment="krb5-server is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095017" comment="krb5-workstation is earlier than 0:1.3.4-46" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095011" comment="krb5-workstation is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095019" comment="krb5 is earlier than 0:1.5-23" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095020" comment="krb5 is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095021" comment="krb5-libs is earlier than 0:1.5-23" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095022" comment="krb5-libs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095023" comment="krb5-workstation is earlier than 0:1.5-23" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095024" comment="krb5-workstation is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095025" comment="krb5-devel is earlier than 0:1.5-23" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095026" comment="krb5-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095027" comment="krb5-server is earlier than 0:1.5-23" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095028" comment="krb5-server is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070097" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0097: firefox security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0097-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0097.html" />
	<description>Mozilla Firefox is an open source Web browser.

Flaws were found in the way Firefox executed malformed JavaScript code. A
malicious web page could cause Firefox to crash or allow arbitrary code 
to be executed as the user running Firefox. (CVE-2007-0775, CVE-2007-0777)

Cross-site scripting (XSS) flaws were found in Firefox.  A malicious web
page could display misleading information, allowing a user to unknowingly
divulge sensitive information, such as a password. (CVE-2006-6077, 
CVE-2007-0995, CVE-2007-0996)

A flaw was found in the way Firefox processed JavaScript contained in
certain tags.  A malicious web page could cause Firefox to execute
JavaScript code with the privileges of the user running Firefox.
(CVE-2007-0994)

A flaw was found in the way Firefox cached web pages on the local disk. A
malicious web page may have been able to inject arbitrary HTML into a
browsing session if the user reloaded a targeted site. (CVE-2007-0778)

Certain web content could overlay Firefox user interface elements such as
the hostname and security indicators.  A malicious web page could trick a
user into thinking they were visiting a different site. (CVE-2007-0779)

Two flaws were found in Firefox's displaying of blocked popup windows. If a
user could be convinced to open a blocked popup, it was possible to read
arbitrary local files, or conduct a cross-site scripting attack against the
user.
(CVE-2007-0780, CVE-2007-0800)

Two buffer overflow flaws were found in the Network Security Services (NSS)
code for processing the SSLv2 protocol. Connecting to a malicious secure
web server could cause the execution of arbitrary code as the user running
Firefox. (CVE-2007-0008, CVE-2007-0009)

A flaw was found in the way Firefox handled the "location.hostname" value.
 A malicious web page could set domain cookies for an arbitrary site, or
possibly perform a cross-site scripting attack. (CVE-2007-0981)
	
Users of Firefox are advised to upgrade to this erratum package, containing
Firefox version 1.5.0.10 which is not vulnerable to these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-14" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6077">CVE-2006-6077</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0008">CVE-2007-0008</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0009">CVE-2007-0009</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0775">CVE-2007-0775</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0777">CVE-2007-0777</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0778">CVE-2007-0778</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0779">CVE-2007-0779</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0780">CVE-2007-0780</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0800">CVE-2007-0800</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0981">CVE-2007-0981</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0994">CVE-2007-0994</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0995">CVE-2007-0995</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0996">CVE-2007-0996</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097002" comment="devhelp is earlier than 0:0.12-10.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097003" comment="devhelp is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097004" comment="firefox is earlier than 0:1.5.0.10-2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097005" comment="firefox is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097006" comment="yelp is earlier than 0:2.16.0-14.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097007" comment="yelp is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097008" comment="devhelp-devel is earlier than 0:0.12-10.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097009" comment="devhelp-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097010" comment="firefox-devel is earlier than 0:1.5.0.10-2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097011" comment="firefox-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070099" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0099: kernel security and bug fix update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0099-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0099.html" />
	<description>The Linux kernel handles the basic functions of the operating system.

These new kernel packages contain fixes for the following security issues:

* a flaw in the key serial number collision avoidance algorithm of the
keyctl subsystem that allowed a local user to cause a denial of service
(CVE-2007-0006, Important)

* a flaw in the Omnikey CardMan 4040 driver that allowed a local user to
execute arbitrary code with kernel privileges. In order to exploit this
issue, the Omnikey CardMan 4040 PCMCIA card must be present and the local
user must have access rights to the character device created by the driver.
(CVE-2007-0005, Moderate)

* a flaw in the core-dump handling that allowed a local user to create core
dumps from unreadable binaries via PT_INTERP. (CVE-2007-0958, Low)

In addition to the security issues described above, a fix for a kernel
panic in the powernow-k8 module, and a fix for a kernel panic when booting
the Xen domain-0 on system with large memory installations have been included.

Red Hat would like to thank Daniel Roethlisberger for reporting an issue
fixed in this erratum.

Red Hat Enterprise Linux 5 users are advised to upgrade their kernels to
the packages associated with their machine architecture and configurations
as listed in this erratum.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-14" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0005">CVE-2007-0005</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0006">CVE-2007-0006</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0958">CVE-2007-0958</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099002" comment="kernel is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099003" comment="kernel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099004" comment="kernel-PAE is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099005" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099006" comment="kernel-debuginfo-common is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099007" comment="kernel-debuginfo-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099008" comment="kernel-headers is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099009" comment="kernel-headers is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099010" comment="kernel-xen is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099012" comment="kernel-doc is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099013" comment="kernel-doc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099014" comment="kernel-PAE-devel is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099015" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099016" comment="kernel-devel is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099017" comment="kernel-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099018" comment="kernel-xen-devel is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099019" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099020" comment="kernel-kdump is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099021" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099022" comment="kernel-kdump-devel is earlier than 0:2.6.18-8.1.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099023" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070106" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0106: gnupg security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0106-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0106.html" />
	<description>GnuPG is a utility for encrypting data and creating digital signatures.

Gerardo Richarte discovered that a number of applications that make use of
GnuPG are prone to a vulnerability involving incorrect verification of
signatures and encryption.  An attacker could add arbitrary content to a
signed message in such a way that a receiver of the message would not be
able to distinguish between the properly signed parts of a message and the
forged, unsigned, parts.  (CVE-2007-1263)

Whilst this is not a vulnerability in GnuPG itself, the GnuPG team have
produced a patch to protect against messages with multiple plaintext
packets.  Users should update to these erratum packages which contain the
backported patch for this issue.

Red Hat would like to thank Core Security Technologies for reporting this
issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-06" />
        <updated date="2007-03-06" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1263">CVE-2007-1263</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070106002" comment="gnupg is earlier than 0:1.2.1-20" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070106003" comment="gnupg is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070106005" comment="gnupg is earlier than 0:1.2.6-9" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070106003" comment="gnupg is signed with Red Hat master key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070107" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0107: gnupg security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0107-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0107.html" />
	<description>GnuPG is a utility for encrypting data and creating digital signatures.

Gerardo Richarte discovered that a number of applications that make use of
GnuPG are prone to a vulnerability involving incorrect verification of
signatures and encryption.  An attacker could add arbitrary content to a
signed message in such a way that a receiver of the message would not be
able to distinguish between the properly signed parts of a message and the
forged, unsigned, parts.  (CVE-2007-1263)

Whilst this is not a vulnerability in GnuPG itself, the GnuPG team have
produced a patch to protect against messages with multiple plaintext
packets.  Users should update to these erratum packages which contain the
backported patch for this issue.

Red Hat would like to thank Core Security Technologies for reporting this
issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-13" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1263">CVE-2007-1263</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070107002" comment="gnupg is earlier than 0:1.4.5-13" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070107003" comment="gnupg is signed with Red Hat redhatrelease key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070108" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0108: thunderbird security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0108-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0108.html" />
	<description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the way Thunderbird processed certain malformed
JavaScript code. A malicious HTML mail message could execute JavaScript
code in such a way that may result in Thunderbird crashing or executing
arbitrary code as the user running Thunderbird. JavaScript support is
disabled by default in Thunderbird; these issues are not exploitable unless
the user has enabled JavaScript. (CVE-2007-0775, CVE-2007-0777)

Several cross-site scripting (XSS) flaws were found in the way Thunderbird
processed certain malformed HTML mail messages. A malicious HTML mail
message could display misleading information which may result in a user
unknowingly divulging sensitive information such as a password.
(CVE-2006-6077, CVE-2007-0995, CVE-2007-0996)

A flaw was found in the way Thunderbird processed text/enhanced and
text/richtext formatted mail message. A specially crafted mail message
could execute arbitrary code with the privileges of the user running
Thunderbird. (CVE-2007-1282)

A flaw was found in the way Thunderbird cached web content on the local
disk. A malicious HTML mail message may be able to inject arbitrary HTML
into a browsing session if the user reloads a targeted site. (CVE-2007-0778)

A flaw was found in the way Thunderbird displayed certain web content. A
malicious HTML mail message could generate content which could overlay user
interface elements such as the hostname and security indicators, tricking a
user into thinking they are visiting a different site. (CVE-2007-0779)

Two flaws were found in the way Thunderbird displayed blocked popup
windows. If a user can be convinced to open a blocked popup, it is possible
to read arbitrary local files, or conduct an XSS attack against the user.
(CVE-2007-0780, CVE-2007-0800)

Two buffer overflow flaws were found in the Network Security Services (NSS)
code for processing the SSLv2 protocol. Connecting to a malicious secure
web server could cause the execution of arbitrary code as the user running
Thunderbird. (CVE-2007-0008, CVE-2007-0009)

A flaw was found in the way Thunderbird handled the "location.hostname"
value during certain browser domain checks. This flaw could allow a
malicious HTML mail message to set domain cookies for an arbitrary site, or
possibly perform an XSS attack. (CVE-2007-0981)

Users of Thunderbird are advised to apply this update, which contains
Thunderbird version 1.5.0.10 that corrects these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-13" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-6077">CVE-2006-6077</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0008">CVE-2007-0008</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0009">CVE-2007-0009</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0775">CVE-2007-0775</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0777">CVE-2007-0777</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0778">CVE-2007-0778</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0779">CVE-2007-0779</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0780">CVE-2007-0780</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0800">CVE-2007-0800</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0981">CVE-2007-0981</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0995">CVE-2007-0995</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0996">CVE-2007-0996</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1282">CVE-2007-1282</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070108002" comment="thunderbird is earlier than 0:1.5.0.10-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070108003" comment="thunderbird is signed with Red Hat redhatrelease key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070114" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0114: xen security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0114-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0114.html" />
	<description>The Xen package contains the tools for managing the virtual machine monitor
in Red Hat Enterprise Linux virtualization.

A flaw was found affecting the VNC server code in QEMU.  On a
fullyvirtualized guest VM, where qemu monitor mode is enabled, a user who
had access to the VNC server could gain the ability to read arbitrary files
as root in the host filesystem.  (CVE-2007-0998)

In addition to disabling qemu monitor mode, the following bugs were also fixed:

* Fix IA64 fully virtualized (VTi) shadow page table mode initialization.

* Fix network bonding in balanced-rr mode.  Without this update, a network
path loss could result in packet loss.

Users of Xen should update to these erratum packages containing backported
patches which correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-14" />
        <updated date="2007-03-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0998">CVE-2007-0998</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114002" comment="xen is earlier than 0:3.0.3-25.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114003" comment="xen is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114004" comment="xen-libs is earlier than 0:3.0.3-25.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114005" comment="xen-libs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114006" comment="xen-devel is earlier than 0:3.0.3-25.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114007" comment="xen-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070123" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0123: cups security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0123-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0123.html" />
	<description>The Common UNIX Printing System (CUPS) provides a portable printing layer
for UNIX(R) operating systems.

A bug was found in the way CUPS handled SSL negotiation.  A remote user
capable of connecting to the CUPS daemon could cause a denial of service to
other CUPS users.  (CVE-2007-0720)

All users of CUPS should upgrade to these updated packages, which contain
a backported patch introducing a timeout, which prevents connections being
kept open for an arbitrarily long time.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-16" />
        <updated date="2007-04-16" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0720">CVE-2007-0720</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123002" comment="cups is earlier than 1:1.1.17-13.3.42" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123003" comment="cups is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123004" comment="cups-devel is earlier than 1:1.1.17-13.3.42" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123005" comment="cups-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123006" comment="cups-libs is earlier than 1:1.1.17-13.3.42" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123007" comment="cups-libs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123009" comment="cups is earlier than 0:1.1.22-0.rc1.9.18" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123003" comment="cups is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123010" comment="cups-devel is earlier than 0:1.1.22-0.rc1.9.18" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123005" comment="cups-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123011" comment="cups-libs is earlier than 0:1.1.22-0.rc1.9.18" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123007" comment="cups-libs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123013" comment="cups is earlier than 0:1.2.4-11.5.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123014" comment="cups is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123015" comment="cups-libs is earlier than 0:1.2.4-11.5.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123016" comment="cups-libs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123017" comment="cups-lpd is earlier than 0:1.2.4-11.5.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123018" comment="cups-lpd is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123019" comment="cups-devel is earlier than 0:1.2.4-11.5.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070123020" comment="cups-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070124" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0124: file security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0124-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0124.html" />
	<description>The file command is used to identify a particular file according to the
type of data contained by the file.

An integer underflow flaw was found in the file utility.  An attacker could
create a carefully crafted file which, if examined by a victim using the
file utility, could lead to arbitrary code execution. (CVE-2007-1536)

This issue did not affect the version of the file utility distributed with
Red Hat Enterprise Linux 2.1 or 3.

Users should upgrade to this erratum package, which contain a backported
patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-03-23" />
        <updated date="2007-03-23" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1536">CVE-2007-1536</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070124002" comment="file is earlier than 0:4.10-3.EL4.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070124003" comment="file is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070124005" comment="file is earlier than 0:4.17-9.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070124006" comment="file is signed with Red Hat redhatrelease key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070125" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0125: XFree86 security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0125-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0125.html" />
	<description>XFree86 is an implementation of the X Window System, which provides the
core functionality for the Linux graphical desktop.

iDefense reported an integer overflow flaw in the XFree86 XC-MISC
extension. A malicious authorized client could exploit this issue to cause
a denial of service (crash) or potentially execute arbitrary code with root
privileges on the XFree86 server. (CVE-2007-1003)

iDefense reported two integer overflows in the way X.org handled various
font files. A malicious local user could exploit these issues to
potentially execute arbitrary code with the privileges of the X.org server.
(CVE-2007-1351, CVE-2007-1352)

An integer overflow flaw was found in the XFree86 XGetPixel() function.
Improper use of this function could cause an application calling it to
function improperly, possibly leading to a crash or arbitrary code
execution. (CVE-2007-1667)

Users of XFree86 should upgrade to these updated packages, which contain a
backported patch and is not vulnerable to this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-03" />
        <updated date="2007-04-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1003">CVE-2007-1003</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1667">CVE-2007-1667</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1351">CVE-2007-1351</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1352">CVE-2007-1352</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125002" comment="XFree86 is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002003" comment="XFree86 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125004" comment="XFree86-100dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002005" comment="XFree86-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125006" comment="XFree86-75dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002007" comment="XFree86-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125008" comment="XFree86-ISO8859-14-100dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002009" comment="XFree86-ISO8859-14-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125010" comment="XFree86-ISO8859-14-75dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002011" comment="XFree86-ISO8859-14-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125012" comment="XFree86-ISO8859-15-100dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002013" comment="XFree86-ISO8859-15-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125014" comment="XFree86-ISO8859-15-75dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002015" comment="XFree86-ISO8859-15-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125016" comment="XFree86-ISO8859-2-100dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002017" comment="XFree86-ISO8859-2-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125018" comment="XFree86-ISO8859-2-75dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002019" comment="XFree86-ISO8859-2-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125020" comment="XFree86-ISO8859-9-100dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002021" comment="XFree86-ISO8859-9-100dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125022" comment="XFree86-ISO8859-9-75dpi-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002023" comment="XFree86-ISO8859-9-75dpi-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125024" comment="XFree86-Mesa-libGL is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002025" comment="XFree86-Mesa-libGL is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125026" comment="XFree86-Mesa-libGLU is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002027" comment="XFree86-Mesa-libGLU is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125028" comment="XFree86-Xnest is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002029" comment="XFree86-Xnest is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125030" comment="XFree86-Xvfb is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002031" comment="XFree86-Xvfb is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125032" comment="XFree86-base-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002033" comment="XFree86-base-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125034" comment="XFree86-cyrillic-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002035" comment="XFree86-cyrillic-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125036" comment="XFree86-devel is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002037" comment="XFree86-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125038" comment="XFree86-doc is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002039" comment="XFree86-doc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125040" comment="XFree86-font-utils is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002041" comment="XFree86-font-utils is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125042" comment="XFree86-libs is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002043" comment="XFree86-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125044" comment="XFree86-libs-data is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002045" comment="XFree86-libs-data is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125046" comment="XFree86-sdk is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002047" comment="XFree86-sdk is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125048" comment="XFree86-syriac-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002049" comment="XFree86-syriac-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125050" comment="XFree86-tools is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002051" comment="XFree86-tools is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125052" comment="XFree86-truetype-fonts is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002053" comment="XFree86-truetype-fonts is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125054" comment="XFree86-twm is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002055" comment="XFree86-twm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125056" comment="XFree86-xauth is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002057" comment="XFree86-xauth is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125058" comment="XFree86-xdm is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002059" comment="XFree86-xdm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070125060" comment="XFree86-xfs is earlier than 0:4.3.0-120.EL" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070002061" comment="XFree86-xfs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070126" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0126: xorg-x11 security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0126-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0126.html" />
	<description>X.org is an open source implementation of the X Window System. It provides
the basic low-level functionality that full-fledged graphical user
interfaces are designed upon.

iDefense reported an integer overflow flaw in the X.org XC-MISC
extension. A malicious authorized client could exploit this issue to cause
a denial of service (crash) or potentially execute arbitrary code with the
privileges of the X.org server. (CVE-2007-1003)

iDefense reported two integer overflows in the way X.org handled various
font files. A malicious local user could exploit these issues to
potentially execute arbitrary code with the privileges of the X.org server.
(CVE-2007-1351, CVE-2007-1352)

An integer overflow flaw was found in the X.org XGetPixel() function.
Improper use of this function could cause an application calling it to
function improperly, possibly leading to a crash or arbitrary code
execution. (CVE-2007-1667)

Users of X.org should upgrade to these updated packages, which contain a
backported patch and are not vulnerable to these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-03" />
        <updated date="2007-04-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1003">CVE-2007-1003</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1351">CVE-2007-1351</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1352">CVE-2007-1352</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1667">CVE-2007-1667</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126002" comment="xorg-x11 is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003003" comment="xorg-x11 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126004" comment="xorg-x11-Mesa-libGL is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003005" comment="xorg-x11-Mesa-libGL is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126006" comment="xorg-x11-Mesa-libGLU is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003007" comment="xorg-x11-Mesa-libGLU is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126008" comment="xorg-x11-Xdmx is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003009" comment="xorg-x11-Xdmx is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126010" comment="xorg-x11-Xnest is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003011" comment="xorg-x11-Xnest is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126012" comment="xorg-x11-Xvfb is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003013" comment="xorg-x11-Xvfb is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126014" comment="xorg-x11-deprecated-libs is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003015" comment="xorg-x11-deprecated-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126016" comment="xorg-x11-deprecated-libs-devel is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003017" comment="xorg-x11-deprecated-libs-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126018" comment="xorg-x11-devel is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003019" comment="xorg-x11-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126020" comment="xorg-x11-doc is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003021" comment="xorg-x11-doc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126022" comment="xorg-x11-font-utils is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003023" comment="xorg-x11-font-utils is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126024" comment="xorg-x11-libs is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003025" comment="xorg-x11-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126026" comment="xorg-x11-sdk is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003027" comment="xorg-x11-sdk is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126028" comment="xorg-x11-tools is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003029" comment="xorg-x11-tools is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126030" comment="xorg-x11-twm is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003031" comment="xorg-x11-twm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126032" comment="xorg-x11-xauth is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003033" comment="xorg-x11-xauth is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126034" comment="xorg-x11-xdm is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003035" comment="xorg-x11-xdm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070126036" comment="xorg-x11-xfs is earlier than 0:6.8.2-1.EL.13.37.7" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070003037" comment="xorg-x11-xfs is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070127" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0127: xorg-x11-server security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0127-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0127.html" />
	<description>X.org is an open source implementation of the X Window System. It provides
the basic low-level functionality that full-fledged graphical user
interfaces are designed upon.

iDefense reported an integer overflow flaw in the X.org X11 server XC-MISC
extension. A malicious authorized client could exploit this issue to cause
a denial of service (crash) or potentially execute arbitrary code with root
privileges on the X.org server. (CVE-2007-1003)

Users of the X.org X11 server should upgrade to these updated packages,
which contain a backported patch and is not vulnerable to this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-03" />
        <updated date="2007-04-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1003">CVE-2007-1003</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127002" comment="xorg-x11-server is earlier than 0:1.1.1-48.13.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127003" comment="xorg-x11-server is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127004" comment="xorg-x11-server-Xdmx is earlier than 0:1.1.1-48.13.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127005" comment="xorg-x11-server-Xdmx is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127006" comment="xorg-x11-server-Xephyr is earlier than 0:1.1.1-48.13.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127007" comment="xorg-x11-server-Xephyr is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127008" comment="xorg-x11-server-Xnest is earlier than 0:1.1.1-48.13.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127009" comment="xorg-x11-server-Xnest is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127010" comment="xorg-x11-server-Xorg is earlier than 0:1.1.1-48.13.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127011" comment="xorg-x11-server-Xorg is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127012" comment="xorg-x11-server-Xvfb is earlier than 0:1.1.1-48.13.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127013" comment="xorg-x11-server-Xvfb is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127014" comment="xorg-x11-server-sdk is earlier than 0:1.1.1-48.13.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070127015" comment="xorg-x11-server-sdk is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070131" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0131: squid security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0131-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0131.html" />
	<description>Squid is a high-performance proxy caching server for Web clients,
supporting FTP, gopher, and HTTP data objects.

A denial of service flaw was found in the way Squid processed the TRACE
request method. It was possible for an attacker behind the Squid proxy
to issue a malformed TRACE request, crashing the Squid daemon child
process. As long as these requests were sent, it would prevent
legitimate usage of the proxy server. (CVE-2007-1560)

This flaw does not affect the version of Squid shipped in Red Hat
Enterprise Linux 2.1, 3, or 4.

Users of Squid should upgrade to this updated package, which contains a
backported patch and is not vulnerable to this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-03" />
        <updated date="2007-04-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1560">CVE-2007-1560</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070131002" comment="squid is earlier than 7:2.6.STABLE6-4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070131003" comment="squid is signed with Red Hat redhatrelease key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070132" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0132: libXfont security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0132-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0132.html" />
	<description>X.org is an open source implementation of the X Window System. It provides
the basic low-level functionality that full-fledged graphical user
interfaces are designed upon.

iDefense reported two integer overflows in the way X.org handled various
font files. A malicious local user could exploit these issues to
potentially execute arbitrary code with the privileges of the X.org server.
(CVE-2007-1351, CVE-2007-1352)

Users of X.org libXfont should upgrade to these updated packages, which
contain a backported patch and are not vulnerable to this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-03" />
        <updated date="2007-04-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1351">CVE-2007-1351</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1352">CVE-2007-1352</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070132002" comment="libXfont is earlier than 0:1.2.2-1.0.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070132003" comment="libXfont is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070132004" comment="libXfont-devel is earlier than 0:1.2.2-1.0.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070132005" comment="libXfont-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070150" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0150: freetype security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0150-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0150.html" />
	<description>FreeType is a free, high-quality,  portable font engine.

An integer overflow flaw was found in the way the FreeType font engine
processed BDF font files. If a user loaded a carefully crafted font file
with a program linked against FreeType, it could cause the application to
crash or execute arbitrary code. While it is uncommon for a user to
explicitly load a font file, there are several application file formats
which contain embedded fonts that are parsed by FreeType. (CVE-2007-1351)

This flaw did not affect the version of FreeType shipped in Red Hat
Enterprise Linux 2.1.

Users of FreeType should upgrade to these updated packages, which contain
a backported patch to correct this issue.

Red Hat would like to thank iDefense for reporting this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-16" />
        <updated date="2007-04-16" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1351">CVE-2007-1351</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150002" comment="freetype is earlier than 0:2.1.4-6.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150003" comment="freetype is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150004" comment="freetype-devel is earlier than 0:2.1.4-6.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150005" comment="freetype-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150007" comment="freetype is earlier than 0:2.1.9-5.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150003" comment="freetype is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150008" comment="freetype-demos is earlier than 0:2.1.9-5.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150009" comment="freetype-demos is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150010" comment="freetype-devel is earlier than 0:2.1.9-5.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150005" comment="freetype-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150011" comment="freetype-utils is earlier than 0:2.1.9-5.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150012" comment="freetype-utils is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150014" comment="freetype is earlier than 0:2.2.1-17.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150015" comment="freetype is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150016" comment="freetype-demos is earlier than 0:2.2.1-17.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150017" comment="freetype-demos is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150018" comment="freetype-devel is earlier than 0:2.2.1-17.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070150019" comment="freetype-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070152" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0152: mysql security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0152-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0152.html" />
	<description>MySQL is a multi-user, multi-threaded SQL database server. MySQL is a
client/server implementation consisting of a server daemon (mysqld) and
many different client programs and libraries.

A flaw was found in the way MySQL handled case sensitive database names. A
user with the ability to create databases could gain unauthorized access to
other databases hosted by the MySQL server. (CVE-2006-4226)

This flaw does not affect the version of MySQL distributed with Red Hat
Enterprise Linux 2.1, 3, or 5.

All users of the MySQL server are advised to upgrade to these updated
packages, which contain a backported patch which fixes this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-03" />
        <updated date="2007-04-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4226">CVE-2006-4226</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070152002" comment="mysql is earlier than 0:4.1.20-2.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070152003" comment="mysql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070152004" comment="mysql-bench is earlier than 0:4.1.20-2.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070152005" comment="mysql-bench is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070152006" comment="mysql-devel is earlier than 0:4.1.20-2.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070152007" comment="mysql-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070152008" comment="mysql-server is earlier than 0:4.1.20-2.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070152009" comment="mysql-server is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070153" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0153: php security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0153-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0153.html" />
	<description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Web server. 

A flaw was found in the way the mbstring extension set global variables. A
script which used the mb_parse_str() function to set global variables could
be forced to enable the register_globals configuration option, possibly
resulting in global variable injection. (CVE-2007-1583)

A heap based buffer overflow flaw was discovered in PHP's gd extension. A
script that could be forced to process WBMP images from an untrusted source
could result in arbitrary code execution. (CVE-2007-1001)

A buffer over-read flaw was discovered in PHP's gd extension. A script that
could be forced to write arbitrary string using a JIS font from an
untrusted source could cause the PHP interpreter to crash. (CVE-2007-0455)

A flaw was discovered in the way PHP's mail() function processed header
data. If a script sent mail using a Subject header containing a string from
an untrusted source, a remote attacker could send bulk e-mail to unintended
recipients. (CVE-2007-1718)

Users of PHP should upgrade to these updated packages which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-20" />
        <updated date="2007-04-20" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0455">CVE-2007-0455</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1001">CVE-2007-1001</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1718">CVE-2007-1718</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1583">CVE-2007-1583</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153002" comment="php is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082003" comment="php is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153004" comment="php-bcmath is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082005" comment="php-bcmath is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153006" comment="php-cli is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082007" comment="php-cli is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153008" comment="php-common is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082009" comment="php-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153010" comment="php-dba is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082011" comment="php-dba is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153012" comment="php-devel is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082013" comment="php-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153014" comment="php-gd is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082015" comment="php-gd is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153016" comment="php-imap is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082017" comment="php-imap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153018" comment="php-ldap is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082019" comment="php-ldap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153020" comment="php-mbstring is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082021" comment="php-mbstring is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153022" comment="php-mysql is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082023" comment="php-mysql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153024" comment="php-ncurses is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082025" comment="php-ncurses is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153026" comment="php-odbc is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082027" comment="php-odbc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153028" comment="php-pdo is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082029" comment="php-pdo is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153030" comment="php-pgsql is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082031" comment="php-pgsql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153032" comment="php-snmp is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082033" comment="php-snmp is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153034" comment="php-soap is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082035" comment="php-soap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153036" comment="php-xml is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082037" comment="php-xml is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070153038" comment="php-xmlrpc is earlier than 0:5.1.6-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082039" comment="php-xmlrpc is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070155" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0155: php security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0155-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0155.html" />
	<description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Web server.

A denial of service flaw was found in the way PHP processed a deeply nested
array. A remote attacker could cause the PHP interpreter to crash by
submitting an input variable with a deeply nested array. (CVE-2007-1285) 

A flaw was found in the way PHP's unserialize() function processed data. If
a remote attacker was able to pass arbitrary data to PHP's unserialize()
function, they could possibly execute arbitrary code as the apache user.
(CVE-2007-1286)

A flaw was found in the way the mbstring extension set global variables. A
script which used the mb_parse_str() function to set global variables could
be forced to enable the register_globals configuration option, possibly
resulting in global variable injection. (CVE-2007-1583)

A double free flaw was found in PHP's session_decode() function. If a
remote attacker was able to pass arbitrary data to PHP's session_decode()
function, they could possibly execute arbitrary code as the apache user.
(CVE-2007-1711)

A flaw was discovered in the way PHP's mail() function processed header
data. If a script sent mail using a Subject header containing a string from
an untrusted source, a remote attacker could send bulk e-mail to unintended
recipients. (CVE-2007-1718)

A heap based buffer overflow flaw was discovered in PHP's gd extension. A
script that could be forced to process WBMP images from an untrusted source
could result in arbitrary code execution. (CVE-2007-1001)

A buffer over-read flaw was discovered in PHP's gd extension. A script that
could be forced to write arbitrary string using a JIS font from an
untrusted source could cause the PHP interpreter to crash. (CVE-2007-0455)

Users of PHP should upgrade to these updated packages which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-16" />
        <updated date="2007-04-16" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1285">CVE-2007-1285</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1286">CVE-2007-1286</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1583">CVE-2007-1583</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1711">CVE-2007-1711</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1718">CVE-2007-1718</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0455">CVE-2007-0455</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1001">CVE-2007-1001</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155002" comment="php is earlier than 0:4.3.2-40.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076003" comment="php is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155004" comment="php-devel is earlier than 0:4.3.2-40.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076005" comment="php-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155006" comment="php-imap is earlier than 0:4.3.2-40.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076007" comment="php-imap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155008" comment="php-ldap is earlier than 0:4.3.2-40.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076009" comment="php-ldap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155010" comment="php-mysql is earlier than 0:4.3.2-40.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076011" comment="php-mysql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155012" comment="php-odbc is earlier than 0:4.3.2-40.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076013" comment="php-odbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155014" comment="php-pgsql is earlier than 0:4.3.2-40.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076015" comment="php-pgsql is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155017" comment="php is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076003" comment="php is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155018" comment="php-devel is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076005" comment="php-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155019" comment="php-domxml is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076020" comment="php-domxml is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155021" comment="php-gd is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076022" comment="php-gd is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155023" comment="php-imap is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076007" comment="php-imap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155024" comment="php-ldap is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076009" comment="php-ldap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155025" comment="php-mbstring is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076026" comment="php-mbstring is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155027" comment="php-mysql is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076011" comment="php-mysql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155028" comment="php-ncurses is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076029" comment="php-ncurses is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155030" comment="php-odbc is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076013" comment="php-odbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155031" comment="php-pear is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076032" comment="php-pear is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155033" comment="php-pgsql is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076015" comment="php-pgsql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155034" comment="php-snmp is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076035" comment="php-snmp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070155036" comment="php-xmlrpc is earlier than 0:4.3.9-3.22.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076037" comment="php-xmlrpc is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070157" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0157: xorg-x11-apps and libX11 security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0157-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0157.html" />
	<description>X.org is an open source implementation of the X Window System. It provides
the basic low-level functionality that full-fledged graphical user
interfaces are designed upon.

An integer overflow flaw was found in the X.org XGetPixel() function.
Improper use of this function could cause an application calling it to
function improperly, possibly leading to a crash or arbitrary code
execution. (CVE-2007-1667)

Users of the X.org X11 server should upgrade to these updated packages,
which contain a backported patch and are not vulnerable to this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-16" />
        <updated date="2007-04-16" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1667">CVE-2007-1667</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070157002" comment="libX11 is earlier than 0:1.0.3-8.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070157003" comment="libX11 is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070157004" comment="xorg-x11-apps is earlier than 0:7.1-4.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070157005" comment="xorg-x11-apps is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070157006" comment="libX11-devel is earlier than 0:1.0.3-8.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070157007" comment="libX11-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070158" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0158: evolution security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0158-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0158.html" />
	<description>Evolution is the GNOME collection of personal information management (PIM)
tools.

A format string bug was found in the way Evolution parsed the category field
in a memo. If a user tried to save and then view a carefully crafted memo,
arbitrary code may be executed as the user running Evolution. (CVE-2007-1002)

This flaw did not affect the versions of Evolution shipped with Red Hat
Enterprise Linux 2.1, 3, or 4.

All users of Evolution should upgrade to these updated packages, which
contain a backported patch which resolves this issue.

Red Hat would like to thank Ulf Härnhammar of Secunia Research for
reporting this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-03" />
        <updated date="2007-05-03" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1002">CVE-2007-1002</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070158002" comment="evolution is earlier than 0:2.8.0-33.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070158003" comment="evolution is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070158004" comment="evolution-devel is earlier than 0:2.8.0-33.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070158005" comment="evolution-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070166" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0166: java-1.4.2-ibm security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux Extras 3</platform>
        <platform>Red Hat Enterprise Linux Extras 4</platform>
        <platform>Red Hat Enterprise Linux Extras 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0166-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0166.html" />
	<description>IBM's 1.4.2 SR8 Java release includes the IBM Java 2 Runtime Environment
and the IBM Java 2 Software Development Kit.

A flaw in GIF image handling was found in the SUN Java Runtime Environment
that has now been reported as also affecting IBM Java 2.  An untrusted
applet or application could use this flaw to elevate its privileges and
potentially execute arbitrary code.  (CVE-2007-0243)

All users of java-1.4.2-ibm should upgrade to these updated packages, which
contain IBM's 1.4.2 SR8 Java release which resolves this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-25" />
        <updated date="2007-04-25" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0243">CVE-2007-0243</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:rhel_extras:3</cpe>
        <cpe>cpe://redhat:rhel_extras:4</cpe>
        <cpe>cpe://redhat:rhel_extras:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux Extras 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166002" comment="java-1.4.2-ibm is earlier than 0:1.4.2.8-1jpp.1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062003" comment="java-1.4.2-ibm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166004" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.8-1jpp.1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062005" comment="java-1.4.2-ibm-demo is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166006" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.8-1jpp.1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062007" comment="java-1.4.2-ibm-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166008" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.8-1jpp.1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062009" comment="java-1.4.2-ibm-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166010" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.8-1jpp.1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062011" comment="java-1.4.2-ibm-plugin is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166012" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.8-1jpp.1.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062013" comment="java-1.4.2-ibm-src is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux Extras 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166015" comment="java-1.4.2-ibm is earlier than 0:1.4.2.8-1jpp.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062003" comment="java-1.4.2-ibm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166016" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.8-1jpp.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062005" comment="java-1.4.2-ibm-demo is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166017" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.8-1jpp.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062007" comment="java-1.4.2-ibm-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166018" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.8-1jpp.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062019" comment="java-1.4.2-ibm-javacomm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166020" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.8-1jpp.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062009" comment="java-1.4.2-ibm-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166021" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.8-1jpp.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062011" comment="java-1.4.2-ibm-plugin is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166022" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.8-1jpp.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070062013" comment="java-1.4.2-ibm-src is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux Extras 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166024" comment="java-1.4.2-ibm is earlier than 0:1.4.2.8-1jpp.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166025" comment="java-1.4.2-ibm is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166026" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.8-1jpp.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166027" comment="java-1.4.2-ibm-demo is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166028" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.8-1jpp.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166029" comment="java-1.4.2-ibm-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166030" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.8-1jpp.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166031" comment="java-1.4.2-ibm-javacomm is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166032" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.8-1jpp.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166033" comment="java-1.4.2-ibm-jdbc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166034" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.8-1jpp.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166035" comment="java-1.4.2-ibm-plugin is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166036" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.8-1jpp.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070166037" comment="java-1.4.2-ibm-src is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070167" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0167: java-1.5.0-ibm security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux Extras 4</platform>
        <platform>Red Hat Enterprise Linux Extras 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0167-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0167.html" />
	<description>IBM's 1.5.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

A flaw in GIF image handling was found in the SUN Java Runtime Environment
that has now been reported as also affecting IBM Java 2. An untrusted
applet or application could use this flaw to elevate its privileges and
potentially execute arbitrary code. (CVE-2007-0243)

This update also resolves the following issues:

* The java-1.5.0-ibm-plugin sub-package conflicted with the new
java-1.5.0-sun-plugin sub-package.

* The java-1.5.0-ibm-plugin package had incorrect dependencies. The
java-1.5.0-ibm-alsa package has been merged into the java-1.5.0-ibm package
to resolve this issue.

All users of java-ibm-1.5.0 should upgrade to these packages, which contain
IBM's 1.5.0 SR4 Java release which resolves these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-25" />
        <updated date="2007-04-25" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0243">CVE-2007-0243</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:rhel_extras:4</cpe>
        <cpe>cpe://redhat:rhel_extras:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux Extras 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167002" comment="java-1.5.0-ibm is earlier than 1:1.5.0.4-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073003" comment="java-1.5.0-ibm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167004" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.4-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073005" comment="java-1.5.0-ibm-demo is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167006" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.4-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073007" comment="java-1.5.0-ibm-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167008" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.4-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073009" comment="java-1.5.0-ibm-javacomm is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167010" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.4-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073011" comment="java-1.5.0-ibm-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167012" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.4-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073013" comment="java-1.5.0-ibm-plugin is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167014" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.4-1jpp.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070073015" comment="java-1.5.0-ibm-src is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux Extras 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167017" comment="java-1.5.0-ibm is earlier than 1:1.5.0.4-1jpp.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167018" comment="java-1.5.0-ibm is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167019" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.4-1jpp.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167020" comment="java-1.5.0-ibm-demo is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167021" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.4-1jpp.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167022" comment="java-1.5.0-ibm-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167023" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.4-1jpp.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167024" comment="java-1.5.0-ibm-javacomm is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167025" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.4-1jpp.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167026" comment="java-1.5.0-ibm-jdbc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167027" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.4-1jpp.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167028" comment="java-1.5.0-ibm-plugin is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167029" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.4-1jpp.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070167030" comment="java-1.5.0-ibm-src is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070169" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0169: kernel security and bug fix update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0169-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0169.html" />
	<description>The Linux kernel handles the basic functions of the operating system.

These new kernel packages contain fixes for the following security issues:

* a flaw in the IPv6 socket option handling that allowed a local user to
read arbitrary kernel memory (CVE-2007-1000, Important).

* a flaw in the IPv6 socket option handling that allowed a local user to
cause a denial of service (CVE-2007-1388, Important).

* a flaw in the utrace support that allowed a local user to cause a denial
of service (CVE-2007-0771, Important).

In addition to the security issues described above, a fix for a memory leak
in the audit subsystem and a fix for a data corruption bug on s390 systems
have been included.

Red Hat Enterprise Linux 5 users are advised to upgrade to these erratum
packages, which are not vulnerable to these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-04-30" />
        <updated date="2007-04-30" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0771">CVE-2007-0771</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1000">CVE-2007-1000</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1388">CVE-2007-1388</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169002" comment="kernel is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099003" comment="kernel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169004" comment="kernel-PAE is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099005" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169006" comment="kernel-debuginfo-common is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099007" comment="kernel-debuginfo-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169008" comment="kernel-headers is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099009" comment="kernel-headers is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169010" comment="kernel-xen is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169012" comment="kernel-doc is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099013" comment="kernel-doc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169014" comment="kernel-PAE-devel is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099015" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169016" comment="kernel-devel is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099017" comment="kernel-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169018" comment="kernel-xen-devel is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099019" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169020" comment="kernel-kdump is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099021" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070169022" comment="kernel-kdump-devel is earlier than 0:2.6.18-8.1.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099023" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070203" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0203: unzip security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0203-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0203.html" />
	<description>The unzip utility is used to list, test, or extract files from a zip archive.

A race condition was found in Unzip. Local users could use this flaw to
modify permissions of arbitrary files via a hard link attack on a file
while it was being decompressed (CVE-2005-2475)

A buffer overflow was found in Unzip command line argument handling.
If a user could be tricked into running Unzip with a specially crafted long
file name, an attacker could execute arbitrary code with that user's
privileges. (CVE-2005-4667)

As well, this update adds support for files larger than 2GB.

All users of unzip should upgrade to these updated packages, which
contain backported patches that resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2475">CVE-2005-2475</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4667">CVE-2005-4667</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070203002" comment="unzip is earlier than 0:5.51-9.EL4.5" />
            <criterion test_ref="oval:com.redhat.rhba:tst:20070418003" comment="unzip is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070208" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0208: w3c-libwww security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0208-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0208.html" />
	<description>w3c-libwww is a general-purpose web library.

Several buffer overflow flaws in w3c-libwww were found. If a client
application that uses w3c-libwww connected to a malicious HTTP server, it
could trigger an out of bounds memory access, causing the client
application to crash (CVE-2005-3183).

This updated version of w3c-libwww also fixes an issue when computing MD5
sums on a 64 bit machine.

Users of w3c-libwww should upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3183">CVE-2005-3183</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070208002" comment="w3c-libwww is earlier than 0:5.4.0-10.1.RHEL4.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070208003" comment="w3c-libwww is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070208004" comment="w3c-libwww-apps is earlier than 0:5.4.0-10.1.RHEL4.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070208005" comment="w3c-libwww-apps is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070208006" comment="w3c-libwww-devel is earlier than 0:5.4.0-10.1.RHEL4.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070208007" comment="w3c-libwww-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070220" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0220: gcc security and bug fix update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0220-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0220.html" />
	<description>The gcc packages include C, C++, Java, Fortran 77, Objective C, and Ada 95
GNU compilers and related support libraries.

Jürgen Weigert discovered a directory traversal flaw in fastjar. An
attacker could create a malicious JAR file which, if unpacked using
fastjar, could write to any files the victim had write access to.
(CVE-2006-3619)

These updated packages also fix several bugs, including:

* two debug information generator bugs

* two internal compiler errors

In addition to this, protoize.1 and unprotoize.1 manual pages have been
added to the package and __cxa_get_exception_ptr@@CXXABI_1.3.1 symbol has
been added into libstdc++.so.6.

For full details regarding all fixed bugs, refer to the package changelog
as well as the specified list of bug reports from bugzilla.

All users of gcc should upgrade to these updated packages, which contain
backported patches to resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-3619">CVE-2006-3619</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220002" comment="gcc is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220003" comment="gcc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220004" comment="cpp is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220005" comment="cpp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220006" comment="gcc-c++ is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220007" comment="gcc-c++ is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220008" comment="gcc-g77 is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220009" comment="gcc-g77 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220010" comment="gcc-gnat is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220011" comment="gcc-gnat is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220012" comment="gcc-java is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220013" comment="gcc-java is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220014" comment="gcc-objc is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220015" comment="gcc-objc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220016" comment="libf2c is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220017" comment="libf2c is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220018" comment="libgcc is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220019" comment="libgcc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220020" comment="libgcj is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220021" comment="libgcj is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220022" comment="libgcj-devel is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220023" comment="libgcj-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220024" comment="libgnat is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220025" comment="libgnat is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220026" comment="libobjc is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220027" comment="libobjc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220028" comment="libstdc++ is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220029" comment="libstdc++ is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220030" comment="libstdc++-devel is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220031" comment="libstdc++-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220032" comment="gcc-c++-ppc32 is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220033" comment="gcc-c++-ppc32 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220034" comment="gcc-ppc32 is earlier than 0:3.4.6-8" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070220035" comment="gcc-ppc32 is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070229" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0229: gdb security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0229-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0229.html" />
	<description>GDB, the GNU debugger, allows debugging of programs written in C, C++, and
other languages by executing them in a controlled fashion and then printing
their data.

Various buffer overflows and underflows were found in the DWARF expression
computation stack in GDB. If a user loaded an executable containing
malicious debugging information into GDB, an attacker might be able to
execute arbitrary code with the privileges of the user. (CVE-2006-4146)

This updated package also addresses the following issues:

* Fixed bogus 0x0 unwind of the thread's topmost function clone(3).

* Fixed deadlock accessing invalid address; for corrupted backtraces.

* Fixed a race which occasionally left the detached processes stopped.

* Fixed 'gcore' command for 32bit debugged processes on 64bit hosts.

* Added support for TLS 'errno' for threaded programs missing its '-debuginfo' package..

* Suggest TLS 'errno' resolving by hand if no threading was found..

* Added a fix to prevent stepping into asynchronously invoked signal handlers.

* Added a fix to avoid false warning on shared objects bfd close on Itanium.

* Fixed segmentation fault on the source display by ^X 1.

* Fixed object names keyboard completion.

* Added a fix to avoid crash of 'info threads' if stale threads exist.

* Fixed a bug where shared libraries occasionally failed to load .

* Fixed handling of exec() called by a threaded debugged program.

* Fixed rebuilding requirements of the gdb package itself on multilib systems.

* Fixed source directory pathname detection for the edit command.

All users of gdb should upgrade to this updated package, which contains
backported patches to resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4146">CVE-2006-4146</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070229002" comment="gdb is earlier than 0:6.3.0.0-1.143.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070229003" comment="gdb is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070235" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0235: util-linux security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0235-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0235.html" />
	<description>The util-linux package contains a collection of basic system utilities.

A flaw was found in the way the login process handled logins which did not
require authentication. Certain processes which conduct their own
authentication could allow a remote user to bypass intended access policies
which would normally be enforced by the login process. (CVE-2006-7108)

This update also fixes the following bugs:

* The partx, addpart and delpart commands were not documented.

* The "umount -l" command did not work on hung NFS mounts with cached data.

* The mount command did not mount NFS V3 share where sec=none was specified.

* The mount command did not read filesystem LABEL from unpartitioned disks.

* The mount command did not recognize labels on VFAT filesystems.

* The fdisk command did not support 4096 sector size for the "-b" option.

* The mount man page did not list option "mand" or information about
/etc/mtab limitations.

All users of util-linux should upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-7108">CVE-2006-7108</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070235002" comment="util-linux is earlier than 0:2.12a-16.EL4.25" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070235003" comment="util-linux is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070244" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0244: busybox security update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0244-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0244.html" />
	<description>Busybox is a single binary which includes versions of a large number of
system commands, including a shell. This package can be useful for
recovering from certain types of system failures.

BusyBox did not use a salt when generating passwords. This made it
easier for local users to guess passwords from a stolen password file. 
(CVE-2006-1058)

All users of busybox are advised to upgrade to these updated packages,
which contain a patch to resolve this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1058">CVE-2006-1058</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070244002" comment="busybox is earlier than 0:1.00.rc1-7.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070244003" comment="busybox is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070244004" comment="busybox-anaconda is earlier than 0:1.00.rc1-7.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070244005" comment="busybox-anaconda is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070245" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0245: cpio security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0245-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0245.html" />
	<description>GNU cpio copies files into or out of a cpio or tar archive.

A buffer overflow was found in cpio on 64-bit platforms. By tricking a
user into adding a specially crafted large file to a cpio archive, a local
attacker may be able to exploit this flaw to execute arbitrary code with
the target user's privileges. (CVE-2005-4268)

This erratum also addresses the following bugs:

* cpio did not set exit codes appropriately.

* cpio did not create a ram disk properly.

All users of cpio are advised to upgrade to this updated package, which
contains backported fixes to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-4268">CVE-2005-4268</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070245002" comment="cpio is earlier than 0:2.5-13.RHEL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070245003" comment="cpio is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070252" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0252: sendmail security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0252-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0252.html" />
	<description>Sendmail is a very widely used Mail Transport Agent (MTA). MTAs deliver
mail from one machine to another. Sendmail is not a client program, but
rather a behind-the-scenes daemon that moves email over networks or the
Internet to its final destination.

The configuration of Sendmail on Red Hat Enterprise Linux was found to not
reject the "localhost.localdomain" domain name for e-mail messages that
came from external hosts. This could have allowed remote attackers to
disguise spoofed messages (CVE-2006-7176).

This updated package also fixes the following bugs:

* Infinite loop within tls read.

* Incorrect path to selinuxenabled in initscript.

* Build artifacts from sendmail-cf package.

* Missing socketmap support.

* Add support for CipherList configuration directive.

* Path for aliases file.

* Failure of shutting down sm-client.

* Allows to specify persistent queue runners.

* Missing dnl for SMART_HOST define.

* Fixes connections stay in CLOSE_WAIT.

All users of Sendmail should upgrade to these updated packages, which
contains backported patches to resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-7176">CVE-2006-7176</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070252002" comment="sendmail is earlier than 0:8.13.1-3.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070252003" comment="sendmail is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070252004" comment="sendmail-cf is earlier than 0:8.13.1-3.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070252005" comment="sendmail-cf is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070252006" comment="sendmail-devel is earlier than 0:8.13.1-3.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070252007" comment="sendmail-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070252008" comment="sendmail-doc is earlier than 0:8.13.1-3.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070252009" comment="sendmail-doc is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070257" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0257: openssh security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0257-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0257.html" />
	<description>OpenSSH is OpenBSD's SSH (Secure SHell) protocol implementation. This
package includes the core files necessary for both the OpenSSH client and
server.

OpenSSH stores hostnames, IP addresses, and keys in plaintext in the
known_hosts file.  A local attacker that has already compromised a user's
SSH account could use this information to generate a list of additional
targets that are likely to have the same password or key.  (CVE-2005-2666)

The following bugs have also been fixed in this update:

* The ssh client could abort the running connection when the server
application generated a large output at once.

* When 'X11UseLocalhost' option was set to 'no' on systems with IPv6
networking enabled, the X11 forwarding socket listened only for IPv6
connections.

* When the privilege separation was enabled in /etc/ssh/sshd_config, some
log messages in the system log were duplicated and also had timestamps from
an incorrect timezone.

All users of openssh should upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2666">CVE-2005-2666</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257002" comment="openssh is earlier than 0:3.9p1-8.RHEL4.20" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257003" comment="openssh is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257004" comment="openssh-askpass is earlier than 0:3.9p1-8.RHEL4.20" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257005" comment="openssh-askpass is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257006" comment="openssh-askpass-gnome is earlier than 0:3.9p1-8.RHEL4.20" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257007" comment="openssh-askpass-gnome is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257008" comment="openssh-clients is earlier than 0:3.9p1-8.RHEL4.20" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257009" comment="openssh-clients is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257010" comment="openssh-server is earlier than 0:3.9p1-8.RHEL4.20" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070257011" comment="openssh-server is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070276" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0276: shadow-utils security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0276-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0276.html" />
	<description>The shadow-utils package includes the necessary programs for converting
UNIX password files to the shadow password format, as well as programs for
managing user and group accounts.

A flaw was found in the useradd tool in shadow-utils. A new user's
mailbox, when created, could have random permissions for a short period.
This could allow a local attacker to read or modify the mailbox.
(CVE-2006-1174)

This update also fixes the following bugs:

* shadow-utils debuginfo package was empty.

* faillog was unusable on 64-bit systems. It checked every UID from 0 to
the max UID, which was an excessively large number on 64-bit systems.

* typo bug in login.defs file

All users of shadow-utils are advised to upgrade to these updated packages,
which contain backported patches to resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1174">CVE-2006-1174</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070276002" comment="shadow-utils is earlier than 2:4.0.3-61.RHEL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070276003" comment="shadow-utils is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070286" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0286: gdm security and bug fix update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0286-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0286.html" />
	<description>Gdm (the GNOME Display Manager) is a highly configurable reimplementation
of xdm, the X Display Manager. Gdm allows you to log into your system with
the X Window System running and supports running several different X
sessions on your local machine at the same time.

Marcus Meissner discovered a race condition issue in the way Gdm modifies
the permissions on the .ICEauthority file. A local attacker could exploit
this flaw to gain privileges. Due to the nature of the flaw, however, a
successful exploitation was unlikely. (CVE-2006-1057)

This erratum also includes a bug fix to correct the pam configuration for
the audit system.

All users of gdm should upgrade to this updated package, which contains
backported patches to resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1057">CVE-2006-1057</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070286002" comment="gdm is earlier than 1:2.6.0.5-7.rhel4.15" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070286003" comment="gdm is signed with Red Hat master key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070310" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0310: openldap security update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0310-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0310.html" />
	<description>OpenLDAP is an open source suite of LDAP (Lightweight Directory Access
Protocol) applications and development tools.

A flaw was found in the way OpenLDAP handled selfwrite access. Users with
selfwrite access were able to modify the distinguished name of any user.
(CVE-2006-4600)

All users are advised to upgrade to these updated openldap packages, which
contain a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-01" />
        <updated date="2007-05-01" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-4600">CVE-2006-4600</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310002" comment="openldap is earlier than 0:2.2.13-7.4E" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310003" comment="openldap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310004" comment="compat-openldap is earlier than 0:2.1.30-7.4E" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310005" comment="compat-openldap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310006" comment="openldap-clients is earlier than 0:2.2.13-7.4E" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310007" comment="openldap-clients is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310008" comment="openldap-devel is earlier than 0:2.2.13-7.4E" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310009" comment="openldap-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310010" comment="openldap-servers is earlier than 0:2.2.13-7.4E" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310011" comment="openldap-servers is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310012" comment="openldap-servers-sql is earlier than 0:2.2.13-7.4E" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070310013" comment="openldap-servers-sql is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070322" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0322: xscreensaver security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0322-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0322.html" />
	<description>XScreenSaver is a collection of screensavers.

Alex Yamauchi discovered a flaw in the way XScreenSaver verifies user
passwords. When a system is using a remote directory service for login
credentials, a local attacker may be able to cause a network outage causing
XScreenSaver to crash, unlocking the screen. (CVE-2007-1859)

Users of XScreenSaver should upgrade to this updated package, which
contains a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-02" />
        <updated date="2007-05-02" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1859">CVE-2007-1859</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070322002" comment="xscreensaver is earlier than 1:4.10-21.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070322003" comment="xscreensaver is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070322005" comment="xscreensaver is earlier than 1:4.18-5.rhel4.14" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070322003" comment="xscreensaver is signed with Red Hat master key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070323" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0323: xen security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0323-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0323.html" />
	<description>The Xen package contains the tools for managing the virtual machine monitor
in Red Hat Enterprise Linux virtualization.

The following security flaws are fixed in the updated Xen package:

Joris van Rantwijk found a flaw in the Pygrub utility which is used as a
boot loader for guest domains.  A malicious local administrator of a guest
domain could create a carefully crafted grub.conf file which would trigger
the execution of arbitrary code outside of that domain. (CVE-2007-4993)

Tavis Ormandy discovered a heap overflow flaw during video-to-video copy
operations in the Cirrus VGA extension code used in Xen.  A malicious local
administrator of a guest domain could potentially trigger this flaw and
execute arbitrary code outside of the domain. (CVE-2007-1320)

Tavis Ormandy discovered insufficient input validation leading to a heap
overflow in the Xen NE2000 network driver.   If the driver is in use, a
malicious local administrator of a guest domain could potentially trigger
this flaw and execute arbitrary code outside of the domain.  Xen does not
use this driver by default. (CVE-2007-1321)

Users of Xen should update to these erratum packages containing backported
patches which correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-10-02" />
        <updated date="2007-10-02" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1320">CVE-2007-1320</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1321">CVE-2007-1321</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4993">CVE-2007-4993</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070323002" comment="xen is earlier than 0:3.0.3-25.0.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114003" comment="xen is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070323004" comment="xen-libs is earlier than 0:3.0.3-25.0.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114005" comment="xen-libs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070323006" comment="xen-devel is earlier than 0:3.0.3-25.0.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070114007" comment="xen-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070327" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0327: tomcat security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0327-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0327.html" />
	<description>Tomcat is a servlet container for Java Servlet and JavaServer Pages
technologies.

Tomcat was found to accept multiple content-length headers in a
request. This could allow attackers to poison a web-cache, bypass web
application firewall protection, or conduct cross-site scripting attacks. 
(CVE-2005-2090)

Tomcat permitted various characters as path delimiters. If Tomcat was used
behind certain proxies and configured to only proxy some contexts, an
attacker could construct an HTTP request to work around the context
restriction and potentially access non-proxied content. (CVE-2007-0450)

The implict-objects.jsp file distributed in the examples webapp displayed a
number of unfiltered header values. If the JSP examples were accessible,
this flaw could allow a remote attacker to perform cross-site scripting
attacks. (CVE-2006-7195)

Users should upgrade to these erratum packages which contain an update to
Tomcat that resolves these issues.  Updated jakarta-commons-modeler
packages are also included which correct a bug when used with Tomcat 5.5.23.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-14" />
        <updated date="2007-05-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2090">CVE-2005-2090</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-7195">CVE-2006-7195</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1358">CVE-2007-1358</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0450">CVE-2007-0450</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327002" comment="tomcat5 is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327003" comment="tomcat5 is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327004" comment="tomcat5-jsp-2.0-api is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327005" comment="tomcat5-jsp-2.0-api is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327006" comment="tomcat5-servlet-2.4-api is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327007" comment="tomcat5-servlet-2.4-api is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327008" comment="jakarta-commons-modeler is earlier than 0:1.1-8jpp.1.0.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327009" comment="jakarta-commons-modeler is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327010" comment="jakarta-commons-modeler-javadoc is earlier than 0:1.1-8jpp.1.0.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327011" comment="jakarta-commons-modeler-javadoc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327012" comment="tomcat5-admin-webapps is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327013" comment="tomcat5-admin-webapps is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327014" comment="tomcat5-common-lib is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327015" comment="tomcat5-common-lib is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327016" comment="tomcat5-jasper is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327017" comment="tomcat5-jasper is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327018" comment="tomcat5-jasper-javadoc is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327019" comment="tomcat5-jasper-javadoc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327020" comment="tomcat5-jsp-2.0-api-javadoc is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327021" comment="tomcat5-jsp-2.0-api-javadoc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327022" comment="tomcat5-server-lib is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327023" comment="tomcat5-server-lib is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327024" comment="tomcat5-servlet-2.4-api-javadoc is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327025" comment="tomcat5-servlet-2.4-api-javadoc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327026" comment="tomcat5-webapps is earlier than 0:5.5.23-0jpp.1.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070327027" comment="tomcat5-webapps is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070336" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0336: postgresql security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0336-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0336.html" />
	<description>PostgreSQL is an advanced Object-Relational database management system
(DBMS).

A flaw was found in the way PostgreSQL allows authenticated users to
execute security-definer functions.  It was possible for an unprivileged
user to execute arbitrary code with the privileges of the security-definer
function. (CVE-2007-2138)

Users of PostgreSQL should upgrade to these updated packages containing
PostgreSQL version 8.1.9, 7.4.17, and 7.3.19 which corrects this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-08" />
        <updated date="2007-05-08" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2138">CVE-2007-2138</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336002" comment="rh-postgresql is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064003" comment="rh-postgresql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336004" comment="rh-postgresql-contrib is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064005" comment="rh-postgresql-contrib is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336006" comment="rh-postgresql-devel is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064007" comment="rh-postgresql-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336008" comment="rh-postgresql-docs is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064009" comment="rh-postgresql-docs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336010" comment="rh-postgresql-jdbc is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064011" comment="rh-postgresql-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336012" comment="rh-postgresql-libs is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064013" comment="rh-postgresql-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336014" comment="rh-postgresql-pl is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064015" comment="rh-postgresql-pl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336016" comment="rh-postgresql-python is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064017" comment="rh-postgresql-python is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336018" comment="rh-postgresql-server is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064019" comment="rh-postgresql-server is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336020" comment="rh-postgresql-tcl is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064021" comment="rh-postgresql-tcl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336022" comment="rh-postgresql-test is earlier than 0:7.3.19-1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064023" comment="rh-postgresql-test is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336025" comment="postgresql is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064026" comment="postgresql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336027" comment="postgresql-contrib is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064028" comment="postgresql-contrib is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336029" comment="postgresql-devel is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064030" comment="postgresql-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336031" comment="postgresql-docs is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064032" comment="postgresql-docs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336033" comment="postgresql-jdbc is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064034" comment="postgresql-jdbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336035" comment="postgresql-libs is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064036" comment="postgresql-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336037" comment="postgresql-pl is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064038" comment="postgresql-pl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336039" comment="postgresql-python is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064040" comment="postgresql-python is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336041" comment="postgresql-server is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064042" comment="postgresql-server is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336043" comment="postgresql-tcl is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064044" comment="postgresql-tcl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336045" comment="postgresql-test is earlier than 0:7.4.17-1.RHEL4.1" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070064046" comment="postgresql-test is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336048" comment="postgresql is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068003" comment="postgresql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336050" comment="postgresql-contrib is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068005" comment="postgresql-contrib is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336052" comment="postgresql-docs is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068007" comment="postgresql-docs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336054" comment="postgresql-libs is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068009" comment="postgresql-libs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336056" comment="postgresql-python is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068011" comment="postgresql-python is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336058" comment="postgresql-tcl is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068013" comment="postgresql-tcl is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336060" comment="postgresql-devel is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068015" comment="postgresql-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336062" comment="postgresql-pl is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068017" comment="postgresql-pl is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336064" comment="postgresql-server is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068019" comment="postgresql-server is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070336066" comment="postgresql-test is earlier than 0:8.1.9-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070068021" comment="postgresql-test is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070338" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0338: freeradius security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0338-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0338.html" />
	<description>FreeRADIUS is a high-performance and highly configurable free RADIUS server
designed to allow centralized authentication and authorization for a network.

A memory leak flaw was found in the way FreeRADIUS parses certain
authentication requests. A remote attacker could send a specially crafted
authentication request which could cause FreeRADIUS to leak a small amount
of memory. If enough of these requests are sent, the FreeRADIUS daemon
would consume a vast quantity of system memory leading to a possible denial
of service.   (CVE-2007-2028)

Users of FreeRADIUS should update to these erratum packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-10" />
        <updated date="2007-05-10" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2028">CVE-2007-2028</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338002" comment="freeradius is earlier than 0:1.0.1-2.RHEL3.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338003" comment="freeradius is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338005" comment="freeradius is earlier than 0:1.0.1-3.RHEL4.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338003" comment="freeradius is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338006" comment="freeradius-mysql is earlier than 0:1.0.1-3.RHEL4.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338007" comment="freeradius-mysql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338008" comment="freeradius-postgresql is earlier than 0:1.0.1-3.RHEL4.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338009" comment="freeradius-postgresql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338010" comment="freeradius-unixODBC is earlier than 0:1.0.1-3.RHEL4.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338011" comment="freeradius-unixODBC is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338013" comment="freeradius is earlier than 0:1.1.3-1.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338014" comment="freeradius is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338015" comment="freeradius-mysql is earlier than 0:1.1.3-1.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338016" comment="freeradius-mysql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338017" comment="freeradius-postgresql is earlier than 0:1.1.3-1.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338018" comment="freeradius-postgresql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338019" comment="freeradius-unixODBC is earlier than 0:1.1.3-1.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070338020" comment="freeradius-unixODBC is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070342" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0342: ipsec-tools security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0342-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0342.html" />
	<description>The ipsec-tools package is used in conjunction with the IPsec functionality
in the linux kernel and includes racoon, an IKEv1 keying daemon.

A denial of service flaw was found in the ipsec-tools racoon daemon. It was
possible for a remote attacker, with knowledge of an existing ipsec tunnel,
to terminate the ipsec connection between two machines. (CVE-2007-1841)

Users of ipsec-tools should upgrade to these updated packages, which
contain a backported patch that resolves this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-17" />
        <updated date="2007-05-17" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1841">CVE-2007-1841</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070342002" comment="ipsec-tools is earlier than 0:0.6.5-8.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070342003" comment="ipsec-tools is signed with Red Hat redhatrelease key" />
            
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070343" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0343: gimp security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0343-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0343.html" />
	<description>The GIMP (GNU Image Manipulation Program) is an image composition and
editing program.

Marsu discovered a stack overflow bug in The GIMP RAS file loader.  An
attacker could create a carefully crafted file that could cause The GIMP to
crash or possibly execute arbitrary code if the file was opened by a
victim.  (CVE-2007-2356)

For users of Red Hat Enterprise Linux 5, the previous GIMP packages had a
bug that concerned the execution order in which the symbolic links to
externally packaged GIMP plugins are installed and removed, causing the
symbolic links to vanish when the package is updated.

Users of The GIMP should update to these erratum packages which contain a
backported fix to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-21" />
        <updated date="2007-05-21" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2356">CVE-2007-2356</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343002" comment="gimp is earlier than 1:1.2.3-20.3.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343003" comment="gimp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343004" comment="gimp-devel is earlier than 1:1.2.3-20.3.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343005" comment="gimp-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343006" comment="gimp-perl is earlier than 1:1.2.3-20.3.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343007" comment="gimp-perl is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343009" comment="gimp is earlier than 1:2.0.5-6.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343003" comment="gimp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343010" comment="gimp-devel is earlier than 1:2.0.5-6.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343005" comment="gimp-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343012" comment="gimp is earlier than 2:2.2.13-2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343013" comment="gimp is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343014" comment="gimp-libs is earlier than 2:2.2.13-2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343015" comment="gimp-libs is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343016" comment="gimp-devel is earlier than 2:2.2.13-2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070343017" comment="gimp-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070344" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0344: evolution-data-server security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0344-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0344.html" />
	<description>The evolution-data-server package provides a unified backend for programs
that work with contacts, tasks, and calendar information.

A flaw was found in the way evolution-data-server processed certain APOP
authentication requests. By sending certain responses when
evolution-data-server attempted to authenticate against an APOP server, a
remote attacker could potentially acquire certain portions of a user's
authentication credentials. (CVE-2007-1558)

All users of evolution-data-server should upgrade to these updated
packages, which contain a backported patch which resolves this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-30" />
        <updated date="2007-05-30" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1558">CVE-2007-1558</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070344002" comment="evolution-data-server is earlier than 0:1.8.0-15.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070344003" comment="evolution-data-server is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070344004" comment="evolution-data-server-devel is earlier than 0:1.8.0-15.0.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070344005" comment="evolution-data-server-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070345" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0345: vixie-cron security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0345-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0345.html" />
	<description>The vixie-cron package contains the Vixie version of cron. Cron is a
standard UNIX daemon that runs specified programs at scheduled times.

Raphael Marichez discovered a denial of service bug in the way vixie-cron
verifies crontab file integrity. A local user with the ability to create a
hardlink to /etc/crontab can prevent vixie-cron from executing certain
system  cron jobs. (CVE-2007-1856)

All users of vixie-cron should upgrade to these updated packages, which
contain a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-17" />
        <updated date="2007-05-17" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1856">CVE-2007-1856</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070345002" comment="vixie-cron is earlier than 0:4.1-19.EL3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070345003" comment="vixie-cron is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070345005" comment="vixie-cron is earlier than 4:4.1-47.EL4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070345003" comment="vixie-cron is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070345007" comment="vixie-cron is earlier than 4:4.1-70.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070345008" comment="vixie-cron is signed with Red Hat redhatrelease key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070346" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0346: vim security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0346-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0346.html" />
	<description>VIM (VIsual editor iMproved) is a version of the vi editor.

An arbitrary command execution flaw was found in the way VIM processes
modelines.  If a user with modelines enabled opened a text file containing
a carefully crafted modeline, arbitrary commands could be executed as the user
running VIM. (CVE-2007-2438)

Users of VIM are advised to upgrade to these updated packages, which
resolve this issue.

Please note: this issue did not affect VIM as distributed with Red Hat
Enterprise Linux 2.1, 3, or 4.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-09" />
        <updated date="2007-05-09" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2438">CVE-2007-2438</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346002" comment="vim is earlier than 2:7.0.109-3.el5.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346003" comment="vim is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346004" comment="vim-X11 is earlier than 2:7.0.109-3.el5.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346005" comment="vim-X11 is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346006" comment="vim-common is earlier than 2:7.0.109-3.el5.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346007" comment="vim-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346008" comment="vim-enhanced is earlier than 2:7.0.109-3.el5.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346009" comment="vim-enhanced is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346010" comment="vim-minimal is earlier than 2:7.0.109-3.el5.3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070346011" comment="vim-minimal is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070347" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0347: kernel security and bug fix update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0347-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0347.html" />
	<description>The Linux kernel handles the basic functions of the operating system.

These new kernel packages contain fixes for the following security issues:

* a flaw in the handling of IPv6 type 0 routing headers that allowed remote
users to cause a denial of service that led to a network amplification
between two routers (CVE-2007-2242, Important).

* a flaw in the nfnetlink_log netfilter module that allowed a local user to
cause a denial of service (CVE-2007-1496, Important).

* a flaw in the flow list of listening IPv6 sockets that allowed a local
user to cause a denial of service (CVE-2007-1592, Important).

* a flaw in the handling of netlink messages that allowed a local user to
cause a denial of service (infinite recursion) (CVE-2007-1861, Important).

* a flaw in the IPv4 forwarding base that allowed a local user to cause an
out-of-bounds access (CVE-2007-2172, Important).

* a flaw in the nf_conntrack netfilter module for IPv6 that allowed remote
users to bypass certain netfilter rules using IPv6 fragments
(CVE-2007-1497, Moderate).

In addition to the security issues described above, fixes for the following
have been included:

* a regression in ipv6 routing.

* an error in memory initialization that caused gdb to output inaccurate
backtraces on ia64.

* the nmi watchdog timeout was updated from 5 to 30 seconds.

* a flaw in distributed lock management that could result in errors during
virtual machine migration.

* an omitted include in kernel-headers that led to compile failures for
some packages.

Red Hat Enterprise Linux 5 users are advised to upgrade to these packages,
which contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-16" />
        <updated date="2007-05-16" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1496">CVE-2007-1496</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1497">CVE-2007-1497</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1592">CVE-2007-1592</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1861">CVE-2007-1861</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2172">CVE-2007-2172</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2242">CVE-2007-2242</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347002" comment="kernel is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099003" comment="kernel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347004" comment="kernel-PAE is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099005" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347006" comment="kernel-debuginfo-common is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099007" comment="kernel-debuginfo-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347008" comment="kernel-headers is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099009" comment="kernel-headers is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347010" comment="kernel-xen is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347012" comment="kernel-doc is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099013" comment="kernel-doc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347014" comment="kernel-PAE-devel is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099015" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347016" comment="kernel-devel is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099017" comment="kernel-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347018" comment="kernel-xen-devel is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099019" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347020" comment="kernel-kdump is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099021" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070347022" comment="kernel-kdump-devel is earlier than 0:2.6.18-8.1.4.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099023" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070348" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0348: php security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0348-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0348.html" />
	<description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Web server. 

A heap buffer overflow flaw was found in the PHP 'xmlrpc' extension.  A
PHP script which implements an XML-RPC server using this extension
could allow a remote attacker to execute arbitrary code as the 'apache'
user.  Note that this flaw does not affect PHP applications using the
pure-PHP XML_RPC class provided in /usr/share/pear. (CVE-2007-1864)

A flaw was found in the PHP 'ftp' extension.  If a PHP script used this
extension to provide access to a private FTP server, and passed untrusted
script input directly to any function provided by this extension, a remote
attacker would be able to send arbitrary FTP commands to the server. 
(CVE-2007-2509)

A buffer overflow flaw was found in the PHP 'soap' extension, regarding the
handling of an HTTP redirect response when using the SOAP client provided
by this extension with an untrusted SOAP server.  No mechanism to trigger
this flaw remotely is known.  (CVE-2007-2510)

Users of PHP should upgrade to these updated packages which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-08" />
        <updated date="2007-05-08" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1864">CVE-2007-1864</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2509">CVE-2007-2509</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2510">CVE-2007-2510</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348002" comment="php is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082003" comment="php is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348004" comment="php-bcmath is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082005" comment="php-bcmath is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348006" comment="php-cli is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082007" comment="php-cli is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348008" comment="php-common is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082009" comment="php-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348010" comment="php-dba is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082011" comment="php-dba is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348012" comment="php-devel is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082013" comment="php-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348014" comment="php-gd is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082015" comment="php-gd is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348016" comment="php-imap is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082017" comment="php-imap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348018" comment="php-ldap is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082019" comment="php-ldap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348020" comment="php-mbstring is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082021" comment="php-mbstring is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348022" comment="php-mysql is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082023" comment="php-mysql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348024" comment="php-ncurses is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082025" comment="php-ncurses is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348026" comment="php-odbc is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082027" comment="php-odbc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348028" comment="php-pdo is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082029" comment="php-pdo is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348030" comment="php-pgsql is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082031" comment="php-pgsql is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348032" comment="php-snmp is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082033" comment="php-snmp is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348034" comment="php-soap is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082035" comment="php-soap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348036" comment="php-xml is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082037" comment="php-xml is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070348038" comment="php-xmlrpc is earlier than 0:5.1.6-12.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070082039" comment="php-xmlrpc is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070349" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0349: php security update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0349-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0349.html" />
	<description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Web server. 

A heap buffer overflow flaw was found in the PHP 'xmlrpc' extension. A
PHP script which implements an XML-RPC server using this extension could
allow a remote attacker to execute arbitrary code as the 'apache' user.
Note that this flaw does not affect PHP applications using the pure-PHP
XML_RPC class provided in /usr/share/pear. (CVE-2007-1864)

A flaw was found in the PHP 'ftp' extension. If a PHP script used this
extension to provide access to a private FTP server, and passed untrusted
script input directly to any function provided by this extension, a remote
attacker would be able to send arbitrary FTP commands to the server.
(CVE-2007-2509)

Users of PHP should upgrade to these updated packages which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-09" />
        <updated date="2007-05-09" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1864">CVE-2007-1864</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2509">CVE-2007-2509</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349002" comment="php is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076003" comment="php is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349004" comment="php-devel is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076005" comment="php-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349006" comment="php-domxml is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076020" comment="php-domxml is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349008" comment="php-gd is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076022" comment="php-gd is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349010" comment="php-imap is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076007" comment="php-imap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349012" comment="php-ldap is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076009" comment="php-ldap is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349014" comment="php-mbstring is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076026" comment="php-mbstring is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349016" comment="php-mysql is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076011" comment="php-mysql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349018" comment="php-ncurses is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076029" comment="php-ncurses is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349020" comment="php-odbc is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076013" comment="php-odbc is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349022" comment="php-pear is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076032" comment="php-pear is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349024" comment="php-pgsql is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076015" comment="php-pgsql is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349026" comment="php-snmp is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076035" comment="php-snmp is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070349028" comment="php-xmlrpc is earlier than 0:4.3.9-3.22.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070076037" comment="php-xmlrpc is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070353" version="304" class="patch">
      <metadata>
        <title>RHSA-2007:0353: evolution security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0353-04" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0353.html" />
	<description>Evolution is the GNOME collection of personal information management (PIM)
tools.

A flaw was found in the way Evolution processed certain APOP authentication
requests. A remote attacker could potentially acquire certain portions of a
user's authentication credentials by sending certain responses when
evolution-data-server attempted to authenticate against an APOP server.
(CVE-2007-1558)

All users of Evolution should upgrade to these updated packages, which
contain a backported patch which resolves this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-17" />
        <updated date="2007-05-17" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1558">CVE-2007-1558</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070353002" comment="evolution is earlier than 0:1.4.5-20.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070353003" comment="evolution is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070353004" comment="evolution-devel is earlier than 0:1.4.5-20.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070353005" comment="evolution-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070353007" comment="evolution is earlier than 0:2.0.2-35.0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070353003" comment="evolution is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070353008" comment="evolution-devel is earlier than 0:2.0.2-35.0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070353005" comment="evolution-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070354" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0354: samba security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0354-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0354.html" />
	<description>Samba provides file and printer sharing services to SMB/CIFS clients.

Various bugs were found in NDR parsing, used to decode MS-RPC requests in
Samba.  A remote attacker could have sent carefully crafted requests
causing a heap overflow, which may have led to the ability to execute
arbitrary code on the server.  (CVE-2007-2446)

Unescaped user input parameters were being passed as arguments to /bin/sh.
A remote, authenticated, user could have triggered this flaw and executed
arbitrary code on the server.  Additionally, on Red Hat Enterprise Linux 5
only, this flaw could be triggered by a remote unauthenticated user if
Samba was configured to use the non-default "username map script" option. 
(CVE-2007-2447)

Users of Samba should upgrade to these packages, which contain backported
patches to correct these issues.  After upgrading, Samba should be
restarted using "service smb restart"

On Red Hat Enterprise Linux 5 the impact of these issues is reduced as
Samba is constrained by the default SELinux "targeted" policy.

Red Hat would like to thank the Samba developers, TippingPoint, and
iDefense for reporting these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-14" />
        <updated date="2007-05-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2446">CVE-2007-2446</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2447">CVE-2007-2447</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354002" comment="samba is earlier than 0:3.0.9-1.3E.13.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060003" comment="samba is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354004" comment="samba-client is earlier than 0:3.0.9-1.3E.13.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060005" comment="samba-client is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354006" comment="samba-common is earlier than 0:3.0.9-1.3E.13.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060007" comment="samba-common is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354008" comment="samba-swat is earlier than 0:3.0.9-1.3E.13.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060009" comment="samba-swat is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354011" comment="samba is earlier than 0:3.0.10-1.4E.12.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060003" comment="samba is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354012" comment="samba-client is earlier than 0:3.0.10-1.4E.12.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060005" comment="samba-client is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354013" comment="samba-common is earlier than 0:3.0.10-1.4E.12.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060007" comment="samba-common is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354014" comment="samba-swat is earlier than 0:3.0.10-1.4E.12.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070060009" comment="samba-swat is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354016" comment="samba is earlier than 0:3.0.23c-2.el5.2.0.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061003" comment="samba is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354018" comment="samba-client is earlier than 0:3.0.23c-2.el5.2.0.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061005" comment="samba-client is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354020" comment="samba-common is earlier than 0:3.0.23c-2.el5.2.0.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061007" comment="samba-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070354022" comment="samba-swat is earlier than 0:3.0.23c-2.el5.2.0.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070061009" comment="samba-swat is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070356" version="304" class="patch">
      <metadata>
        <title>RHSA-2007:0356: libpng security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0356-04" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0356.html" />
	<description>The libpng package contains a library of functions for creating and
manipulating PNG (Portable Network Graphics) image format files.

A flaw was found in the handling of malformed images in libpng. An attacker
could create a carefully crafted PNG image file in such a way that it could
cause an application linked with libpng to crash when the file was
manipulated.  (CVE-2007-2445)

A flaw was found in the sPLT chunk handling code in libpng. An attacker
could create a carefully crafted PNG image file in such a way that it could
cause an application linked with libpng to crash when the file was opened. 
(CVE-2006-5793)

Users of libpng should update to these updated packages which contain
backported patches to correct these issues.

Red Hat would like to thank Glenn Randers-Pehrson, Mats Palmgren, and Tavis
Ormandy for supplying details and patches for these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-17" />
        <updated date="2007-05-17" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5793">CVE-2006-5793</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2445">CVE-2007-2445</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356002" comment="libpng is earlier than 2:1.2.2-27" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356003" comment="libpng is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356004" comment="libpng10 is earlier than 0:1.0.13-17" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356005" comment="libpng10 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356006" comment="libpng-devel is earlier than 2:1.2.2-27" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356007" comment="libpng-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356008" comment="libpng10-devel is earlier than 0:1.0.13-17" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356009" comment="libpng10-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356011" comment="libpng is earlier than 2:1.2.7-3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356003" comment="libpng is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356012" comment="libpng10 is earlier than 0:1.0.16-3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356005" comment="libpng10 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356013" comment="libpng-devel is earlier than 2:1.2.7-3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356007" comment="libpng-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356014" comment="libpng10-devel is earlier than 0:1.0.16-3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356009" comment="libpng10-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356016" comment="libpng is earlier than 2:1.2.10-7.0.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356017" comment="libpng is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356018" comment="libpng-devel is earlier than 2:1.2.10-7.0.2" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070356019" comment="libpng-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070358" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0358: squirrelmail security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0358-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0358.html" />
	<description>SquirrelMail is a standards-based webmail package written in PHP4. 

Several HTML filtering bugs were discovered in SquirrelMail.  An attacker
could inject arbitrary JavaScript leading to cross-site scripting attacks
by sending an e-mail viewed by a user within SquirrelMail. 
(CVE-2007-1262)

Squirrelmail did not sufficiently check arguments to IMG tags in HTML
e-mail messages. This could be exploited by an attacker by sending
arbitrary e-mail messages on behalf of a squirrelmail user tricked into opening
a maliciously crafted HTML e-mail message.  (CVE-2007-2589)

Users of SquirrelMail should upgrade to this erratum package, which
contains a backported patch to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-17" />
        <updated date="2007-05-17" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1262">CVE-2007-1262</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2589">CVE-2007-2589</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070358002" comment="squirrelmail is earlier than 0:1.4.8-6.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070022003" comment="squirrelmail is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070358005" comment="squirrelmail is earlier than 0:1.4.8-4.0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070022003" comment="squirrelmail is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070358007" comment="squirrelmail is earlier than 0:1.4.8-4.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070358008" comment="squirrelmail is signed with Red Hat redhatrelease key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070368" version="305" class="patch">
      <metadata>
        <title>RHSA-2007:0368: tcpdump security and bug fix update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0368-05" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0368.html" />
	<description>Tcpdump is a command line tool for monitoring network traffic.

Moritz Jodeit discovered a denial of service bug in the tcpdump IEEE 802.11
processing code. If a certain link type was explicitly specified, an
attacker could inject a carefully crafted frame onto the IEEE 802.11
network that could crash a running tcpdump session. (CVE-2007-1218)

An integer overflow flaw was found in tcpdump's BGP processing code. An
attacker could execute arbitrary code with the privilege of the pcap user
by injecting a crafted frame onto the network. (CVE-2007-3798)

In addition, the following bugs have been addressed:

* The arpwatch service initialization script would exit prematurely,
returning an incorrect successful exit status and preventing the status
command from running in case networking is not available.

* Tcpdump would not drop root privileges completely when launched with the
-C option. This might have been abused by an attacker to gain root
privileges in case a security problem was found in tcpdump. Users of
tcpdump are encouraged to specify meaningful arguments to the -Z option in
case they want tcpdump to write files with privileges other than of the
pcap user.

Users of tcpdump are advised to upgrade to these erratum packages, which
contain backported patches that correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-11-07" />
        <updated date="2007-11-07" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1218">CVE-2007-1218</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3798">CVE-2007-3798</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070368002" comment="tcpdump is earlier than 14:3.9.4-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070368003" comment="tcpdump is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070368004" comment="libpcap is earlier than 14:0.9.4-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070368005" comment="libpcap is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070368006" comment="arpwatch is earlier than 14:2.1a13-18.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070368007" comment="arpwatch is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070368008" comment="libpcap-devel is earlier than 14:0.9.4-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070368009" comment="libpcap-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070376" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0376: kernel security and bug fix update
        (Important)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0376-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0376.html" />
	<description>The Linux kernel handles the basic functions of the operating system.

These new kernel packages contain fixes for the following security issues:

* a flaw in the mount handling routine for 64-bit systems that allowed a
local user to cause denial of service (CVE-2006-7203, Important).

* a flaw in the PPP over Ethernet implementation that allowed a remote user
to cause a denial of service (CVE-2007-2525, Important).

* a flaw in the Bluetooth subsystem that allowed a local user to trigger an
information leak (CVE-2007-1353, Low).

* a bug in the random number generator that prevented the manual seeding of
the entropy pool (CVE-2007-2453, Low).

In addition to the security issues described above, fixes for the following
have been included:

* a race condition between ext3_link/unlink that could create an orphan
inode list corruption.

* a bug in the e1000 driver that could lead to a watchdog timeout panic.

Red Hat Enterprise Linux 5 users are advised to upgrade to these packages,
which contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-06-14" />
        <updated date="2007-06-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-7203">CVE-2006-7203</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1353">CVE-2007-1353</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2453">CVE-2007-2453</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2525">CVE-2007-2525</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376002" comment="kernel is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099003" comment="kernel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376004" comment="kernel-PAE is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099005" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376006" comment="kernel-debuginfo-common is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099007" comment="kernel-debuginfo-common is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376008" comment="kernel-headers is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099009" comment="kernel-headers is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376010" comment="kernel-xen is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376012" comment="kernel-doc is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099013" comment="kernel-doc is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376014" comment="kernel-PAE-devel is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099015" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376016" comment="kernel-devel is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099017" comment="kernel-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376018" comment="kernel-xen-devel is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099019" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376020" comment="kernel-kdump is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099021" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070376022" comment="kernel-kdump-devel is earlier than 0:2.6.18-8.1.6.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070099023" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070384" version="302" class="patch">
      <metadata>
        <title>RHSA-2007:0384: krb5 security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0384-02" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0384.html" />
	<description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other through use of symmetric encryption
and a trusted third party, the KDC. kadmind is the KADM5 administration
server.

David Coffey discovered an uninitialized pointer free flaw in the RPC
library used by kadmind. A remote unauthenticated attacker who can access
kadmind could trigger this flaw and cause kadmind to crash or potentially
execute arbitrary code as root. (CVE-2007-2442)

David Coffey also discovered an overflow flaw in the RPC library used by
kadmind. On Red Hat Enterprise Linux, exploitation of this flaw is limited
to a denial of service. A remote unauthenticated attacker who can access
kadmind could trigger this flaw and cause kadmind to crash. (CVE-2007-2443)

A stack buffer overflow flaw was found in kadmind. An authenticated
attacker who can access kadmind could trigger this flaw and potentially
execute arbitrary code on the Kerberos server. (CVE-2007-2798)

For Red Hat Enterprise Linux 2.1, several portability bugs which would lead
to unexpected crashes on the ia64 platform have also been fixed.

Users of krb5-server are advised to update to these erratum packages which
contain backported fixes to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-06-26" />
        <updated date="2007-06-26" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2442">CVE-2007-2442</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2443">CVE-2007-2443</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2798">CVE-2007-2798</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070384002" comment="krb5 is earlier than 0:1.2.7-66" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095003" comment="krb5 is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070384004" comment="krb5-devel is earlier than 0:1.2.7-66" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095005" comment="krb5-devel is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070384006" comment="krb5-libs is earlier than 0:1.2.7-66" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095007" comment="krb5-libs is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070384008" comment="krb5-server is earlier than 0:1.2.7-66" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095009" comment="krb5-server is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070384010" comment="krb5-workstation is earlier than 0:1.2.7-66" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070095011" comment="krb5-workstation is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070385" version="304" class="patch">
      <metadata>
        <title>RHSA-2007:0385: fetchmail security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0385-04" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0385.html" />
	<description>Fetchmail is a remote mail retrieval and forwarding utility intended
for use over on-demand TCP/IP links, like SLIP or PPP connections.

A flaw was found in the way fetchmail processed certain APOP authentication
requests. By sending certain responses when fetchmail attempted to
authenticate against an APOP server, a remote attacker could potentially
acquire certain portions of a user's authentication credentials.
(CVE-2007-1558)

All users of fetchmail should upgrade to this updated package, which
contains a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-06-07" />
        <updated date="2007-06-07" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1558">CVE-2007-1558</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070385002" comment="fetchmail is earlier than 0:6.2.0-3.el3.4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070018003" comment="fetchmail is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070385005" comment="fetchmail is earlier than 0:6.2.5-6.0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070018003" comment="fetchmail is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070385007" comment="fetchmail is earlier than 0:6.3.6-1.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070385008" comment="fetchmail is signed with Red Hat redhatrelease key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070386" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0386: mutt security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0386-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0386.html" />
	<description>Mutt is a text-mode mail user agent.

A flaw was found in the way Mutt used temporary files on NFS file systems.
Due to an implementation issue in the NFS protocol, Mutt was not able to
exclusively open a new file.  A local attacker could conduct a
time-dependent attack and possibly gain access to e-mail attachments opened
by a victim. (CVE-2006-5297)

A flaw was found in the way Mutt processed certain APOP authentication
requests. By sending certain responses when mutt attempted to authenticate
against an APOP server, a remote attacker could potentially acquire certain
portions of a user's authentication credentials. (CVE-2007-1558)

A flaw was found in the way Mutt handled certain characters in gecos fields
which could lead to a buffer overflow.  The gecos field is an entry in the
password database typically used to record general information about the
user.  A local attacker could give themselves a carefully crafted "Real
Name" which could execute arbitrary code if a victim uses Mutt and expands
the attackers alias.  (CVE-2007-2683)

All users of mutt should upgrade to this updated package, which
contains a backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-06-04" />
        <updated date="2007-06-04" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5297">CVE-2006-5297</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1558">CVE-2007-1558</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2683">CVE-2007-2683</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070386002" comment="mutt is earlier than 5:1.4.1-5.el3" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070386003" comment="mutt is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070386005" comment="mutt is earlier than 5:1.4.1-12.0.3.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070386003" comment="mutt is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070386007" comment="mutt is earlier than 5:1.4.2.2-3.0.2.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070386008" comment="mutt is signed with Red Hat redhatrelease key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070387" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0387: tcpdump security and bug fix update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0387-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0387.html" />
	<description>Tcpdump is a command line tool for monitoring network traffic.

Moritz Jodeit discovered a denial of service bug in the tcpdump IEEE
802.11 processing code. An attacker could inject a carefully crafted frame
onto the IEEE 802.11 network that could crash a running tcpdump session if
a certain link type was explicitly specified. (CVE-2007-1218)

An integer overflow flaw was found in tcpdump's BGP processing code. An
attacker could execute arbitrary code with the privilege of the pcap user
by injecting a crafted frame onto the network. (CVE-2007-3798)

In addition, the following bugs have been addressed: 

* if called with -C and -W switches, tcpdump would create the first
savefile with the privileges of the user that executed tcpdump (usually
root), rather than with ones of the pcap user.  This could result in the
inability to save the complete traffic log file properly without the
immediate notice of the user running tcpdump.

* the arpwatch service initialization script would exit prematurely,
returning a successful exit status incorrectly and preventing the status
command from running in case networking is not available.

Users of tcpdump are advised to upgrade to these erratum packages, which
contain backported patches that correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-11-15" />
        <updated date="2007-11-15" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1218">CVE-2007-1218</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3798">CVE-2007-3798</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070387002" comment="tcpdump is earlier than 14:3.8.2-12.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070387003" comment="tcpdump is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070387004" comment="arpwatch is earlier than 14:2.1a13-12.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070387005" comment="arpwatch is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070387006" comment="libpcap is earlier than 14:0.8.3-12.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070387007" comment="libpcap is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070389" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0389: quagga security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0389-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0389.html" />
	<description>Quagga is a TCP/IP based routing software suite.

An out of bounds memory read flaw was discovered in Quagga's bgpd.  A
configured peer of bgpd could cause Quagga to crash, leading to a denial of
service (CVE-2007-1995).

All users of Quagga should upgrade to this updated package, which
contains a backported patch to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-30" />
        <updated date="2007-05-30" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1995">CVE-2007-1995</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389002" comment="quagga is earlier than 0:0.96.2-12.3E" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389003" comment="quagga is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389005" comment="quagga is earlier than 0:0.98.3-2.4.0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389003" comment="quagga is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389006" comment="quagga-contrib is earlier than 0:0.98.3-2.4.0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389007" comment="quagga-contrib is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389008" comment="quagga-devel is earlier than 0:0.98.3-2.4.0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389009" comment="quagga-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389011" comment="quagga is earlier than 0:0.98.6-2.1.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389012" comment="quagga is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389013" comment="quagga-contrib is earlier than 0:0.98.6-2.1.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389014" comment="quagga-contrib is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389015" comment="quagga-devel is earlier than 0:0.98.6-2.1.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070389016" comment="quagga-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070391" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0391: file security update
        (Moderate)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0391-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0391.html" />
	<description>The file command is used to identify a particular file according to the
type of data contained by the file.

The fix for CVE-2007-1536 introduced a new integer underflow flaw in the
file utility. An attacker could create a carefully crafted file which, if
examined by a victim using the file utility, could lead to arbitrary code
execution. (CVE-2007-2799)

This issue did not affect the version of the file utility distributed with
Red Hat Enterprise Linux 2.1 or 3.

Users should upgrade to this erratum package, which contain a backported
patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-30" />
        <updated date="2007-05-30" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2799">CVE-2007-2799</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070391002" comment="file is earlier than 0:4.10-3.0.2.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070124003" comment="file is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070391005" comment="file is earlier than 0:4.17-9.0.1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070124006" comment="file is signed with Red Hat redhatrelease key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070395" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0395: mod_perl security update
        (Low)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0395-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0395.html" />
	<description>Mod_perl incorporates a Perl interpreter into the Apache web server,
so that the Apache web server can directly execute Perl code.

An issue was found in the "namespace_from_uri" method of the
ModPerl::RegistryCooker class.  If a server implemented a mod_perl registry
module using this method, a remote attacker requesting a carefully crafted
URI can cause resource consumption, which could lead to a denial of service
(CVE-2007-1349).

Users of mod_perl should update to these erratum packages which contain a
backported fix to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-06-14" />
        <updated date="2007-06-14" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1349">CVE-2007-1349</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:3</cpe>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070026001" comment="Red Hat Enterprise Linux 3 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395002" comment="mod_perl is earlier than 0:1.99_09-12.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395003" comment="mod_perl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395004" comment="mod_perl-devel is earlier than 0:1.99_09-12.ent" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395005" comment="mod_perl-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395007" comment="mod_perl is earlier than 0:1.99_16-4.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395003" comment="mod_perl is signed with Red Hat master key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395008" comment="mod_perl-devel is earlier than 0:1.99_16-4.5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395005" comment="mod_perl-devel is signed with Red Hat master key" />
            </criteria>
    </criteria>
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395010" comment="mod_perl is earlier than 0:2.0.2-6.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395011" comment="mod_perl is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395012" comment="mod_perl-devel is earlier than 0:2.0.2-6.3.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070395013" comment="mod_perl-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070400" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0400: firefox security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0400-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0400.html" />
	<description>Mozilla Firefox is an open source Web browser.

Several flaws were found in the way Firefox processed certain malformed
JavaScript code. A web page containing malicious JavaScript code could
cause Firefox to crash or potentially execute arbitrary code as the user
running Firefox. (CVE-2007-2867, CVE-2007-2868)

A flaw was found in the way Firefox handled certain FTP PASV commands. A
malicious FTP server could use this flaw to perform a rudimentary
port-scan of machines behind a user's firewall. (CVE-2007-1562)

Several denial of service flaws were found in the way Firefox handled
certain form and cookie data. A malicious web site that is able to set
arbitrary form and cookie data could prevent Firefox from
functioning properly. (CVE-2007-1362, CVE-2007-2869)

A flaw was found in the way Firefox handled the addEventListener
JavaScript method. A malicious web site could use this method to access or
modify sensitive data from another web site. (CVE-2007-2870)

A flaw was found in the way Firefox displayed certain web content. A
malicious web page could generate content that would overlay user
interface elements such as the hostname and security indicators, tricking 
users into thinking they are visiting a different site. (CVE-2007-2871)

Users of Firefox are advised to upgrade to these erratum packages, which
contain Firefox version 1.5.0.12 that corrects these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-30" />
        <updated date="2007-05-30" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1362">CVE-2007-1362</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1562">CVE-2007-1562</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2867">CVE-2007-2867</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2868">CVE-2007-2868</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2869">CVE-2007-2869</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2870">CVE-2007-2870</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2871">CVE-2007-2871</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070400002" comment="firefox is earlier than 0:1.5.0.12-0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070079003" comment="firefox is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
    <criteria operator="OR">
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070400005" comment="devhelp is earlier than 0:0.12-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097003" comment="devhelp is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070400007" comment="firefox is earlier than 0:1.5.0.12-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097005" comment="firefox is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070400009" comment="yelp is earlier than 0:2.16.0-15.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097007" comment="yelp is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070400011" comment="devhelp-devel is earlier than 0:0.12-11.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097009" comment="devhelp-devel is signed with Red Hat redhatrelease key" />
            </criteria>
            <criteria operator="AND">

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070400013" comment="firefox-devel is earlier than 0:1.5.0.12-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070097011" comment="firefox-devel is signed with Red Hat redhatrelease key" />
            </criteria>
    </criteria>
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070401" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0401: thunderbird security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 4</platform>
        <platform>Red Hat Enterprise Linux 5</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0401-03" ref_url="https://rhn.redhat.com/errata/RHSA-2007-0401.html" />
	<description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the way Thunderbird processed certain malformed
JavaScript code. A web page containing malicious JavaScript code could
cause Thunderbird to crash or potentially execute arbitrary code
as the user running Thunderbird. (CVE-2007-2867, CVE-2007-2868)

Several denial of service flaws were found in the way Thunderbird handled
certain form and cookie data. A malicious web site that is able to set
arbitrary form and cookie data could prevent Thunderbird from
functioning properly. (CVE-2007-1362, CVE-2007-2869)

A flaw was found in the way Thunderbird processed certain APOP
authentication requests. By sending certain responses when Thunderbird
attempted to authenticate against an APOP server, a remote attacker could
potentially acquire certain portions of a user's authentication
credentials. (CVE-2007-1558)

A flaw was found in the way Thunderbird displayed certain web content. A
malicious web page could generate content which could overlay user
interface elements such as the hostname and security indicators, tricking 
users into thinking they are visiting a different site. (CVE-2007-2871)

Users of Thunderbird are advised to apply this update, which contains
Thunderbird version 1.5.0.12 that corrects these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2007 Red Hat, Inc.</rights>
        <issued date="2007-05-30" />
        <updated date="2007-05-30" />
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1362">CVE-2007-1362</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1558">CVE-2007-1558</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2867">CVE-2007-2867</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2868">CVE-2007-2868</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2869">CVE-2007-2869</cve>
        <cve href="http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2871">CVE-2007-2871</cve>
  	<affected_cpe_list>
        <cpe>cpe://redhat:enterprise_linux:4</cpe>
        <cpe>cpe://redhat:enterprise_linux:5</cpe>
        </affected_cpe_list>
</advisory>
      </metadata><criteria operator="OR">
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhba:tst:20070304001" comment="Red Hat Enterprise Linux 4 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070401002" comment="thunderbird is earlier than 0:1.5.0.12-0.1.el4" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070078003" comment="thunderbird is signed with Red Hat master key" />
            
  </criteria>
  <criteria operator="AND">
    <criterion test_ref="oval:com.redhat.rhsa:tst:20070055001" comment="Red Hat Enterprise Linux 5 is installed" />
            

            <criterion test_ref="oval:com.redhat.rhsa:tst:20070401005" comment="thunderbird is earlier than 0:1.5.0.12-1.el5" />
            <criterion test_ref="oval:com.redhat.rhsa:tst:20070108003" comment="thunderbird is signed with Red Hat redhatrelease key" />
            
  </criteria>
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20070402" version="303" class="patch">
      <metadata>
        <title>RHSA-2007:0402: seamonkey security update
        (Critical)
	</title>
  	<affected family="unix">
        <platform>Red Hat Enterprise Linux 3</platform>
        <platform>Red Hat Enterprise Linux 4</platform>
        </affected>
        <reference source="RHSA" ref_id="RHSA-2007:0402-03" ref_url="https://rhn.redhat.com