<?xml version="1.0" encoding="UTF-8"?>

<oval_definitions xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:unix-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix" xmlns:red-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-common-5 oval-common-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5 oval-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#unix unix-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#linux linux-definitions-schema.xsd">
  <generator>
    <oval:product_name>Red Hat OVAL Patch Definition Merger</oval:product_name>
    <oval:product_version>2</oval:product_version>
    <oval:schema_version>5.3</oval:schema_version>
    <oval:timestamp>2011-09-30T09:55:20
</oval:timestamp>
  </generator>
<definitions>
<definition id="oval:com.redhat.rhsa:def:20100002" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0002: PyXML security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0002-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0002.html" />
          <reference source="CVE" ref_id="CVE-2009-3720" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3720.html" />
    
    <description>PyXML provides XML libraries for Python. The distribution contains a
validating XML parser, an implementation of the SAX and DOM programming
interfaces, and an interface to the Expat parser.

A buffer over-read flaw was found in the way PyXML's Expat parser handled
malformed UTF-8 sequences when processing XML files. A specially-crafted
XML file could cause Python applications using PyXML's Expat parser to
crash while parsing the file. (CVE-2009-3720)

This update makes PyXML use the system Expat library rather than its own
internal copy; therefore, users must install the RHSA-2009:1625 expat
update together with this PyXML update to resolve the CVE-2009-3720 issue.

All PyXML users should upgrade to this updated package, which changes PyXML
to use the system Expat library. After installing this update along with
RHSA-2009:1625, applications using the PyXML library must be restarted for
the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-04" />
        <updated date="2010-01-04" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3720.html">CVE-2009-3720</cve>
                <bugzilla href="http://bugzilla.redhat.com/531697" id="531697">CVE-2009-3720 expat: buffer over-read and crash on XML with malformed UTF-8 sequences</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100002002" comment="PyXML is earlier than 0:0.8.4-4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100002003" comment="PyXML is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100002005" comment="PyXML is earlier than 0:0.8.3-6.el4_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100002006" comment="PyXML is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100003" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0003: gd security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0003-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0003.html" />
          <reference source="CVE" ref_id="CVE-2009-3546" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3546.html" />
    
    <description>The gd packages provide a graphics library used for the dynamic creation of
images, such as PNG and JPEG.

A missing input sanitization flaw, leading to a buffer overflow, was
discovered in the gd library. A specially-crafted GD image file could cause
an application using the gd library to crash or, possibly, execute
arbitrary code when opened. (CVE-2009-3546)

Users of gd should upgrade to these updated packages, which contain a
backported patch to resolve this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-04" />
        <updated date="2010-01-04" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3546.html">CVE-2009-3546</cve>
                <bugzilla href="http://bugzilla.redhat.com/529213" id="529213">CVE-2009-3546 gd: insufficient input validation in _gdGetColors()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100003006" comment="gd-devel is earlier than 0:2.0.33-9.4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100003007" comment="gd-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100003004" comment="gd-progs is earlier than 0:2.0.33-9.4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100003005" comment="gd-progs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100003002" comment="gd is earlier than 0:2.0.33-9.4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100003003" comment="gd is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100003011" comment="gd-devel is earlier than 0:2.0.28-5.4E.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100003012" comment="gd-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100003013" comment="gd-progs is earlier than 0:2.0.28-5.4E.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100003014" comment="gd-progs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100003009" comment="gd is earlier than 0:2.0.28-5.4E.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100003010" comment="gd is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100018" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0018: dbus security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0018-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0018.html" />
          <reference source="CVE" ref_id="CVE-2009-1189" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1189.html" />
    
    <description>D-Bus is a system for sending messages between applications. It is used for
the system-wide message bus service and as a per-user-login-session
messaging facility.

It was discovered that the Red Hat Security Advisory RHSA-2009:0008 did
not correctly fix the denial of service flaw in the system for sending
messages between applications. A local user could use this flaw to send a
message with a malformed signature to the bus, causing the bus (and,
consequently, any process using libdbus to receive messages) to abort.
(CVE-2009-1189)

Note: Users running any application providing services over the system
message bus are advised to test this update carefully before deploying it
in production environments.

All users are advised to upgrade to these updated packages, which contain a
backported patch to correct this issue. For the update to take effect, all
running instances of dbus-daemon and all running applications using the
libdbus library must be restarted, or the system rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-07" />
        <updated date="2010-01-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1189.html">CVE-2009-1189</cve>
                <bugzilla href="http://bugzilla.redhat.com/496672" id="496672">CVE-2009-1189 dbus: invalid fix for CVE-2008-3834</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100018004" comment="dbus-x11 is earlier than 0:1.1.2-12.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100018005" comment="dbus-x11 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100018008" comment="dbus-devel is earlier than 0:1.1.2-12.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100018009" comment="dbus-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100018002" comment="dbus is earlier than 0:1.1.2-12.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100018003" comment="dbus is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100018006" comment="dbus-libs is earlier than 0:1.1.2-12.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100018007" comment="dbus-libs is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100019" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0019: kernel security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0019-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0019.html" />
          <reference source="CVE" ref_id="CVE-2007-4567" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-4567.html" />
          <reference source="CVE" ref_id="CVE-2009-4536" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4536.html" />
          <reference source="CVE" ref_id="CVE-2009-4537" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4537.html" />
          <reference source="CVE" ref_id="CVE-2009-4538" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4538.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* a flaw was found in the IPv6 Extension Header (EH) handling
implementation in the Linux kernel. The skb->dst data structure was not
properly validated in the ipv6_hop_jumbo() function. This could possibly
lead to a remote denial of service. (CVE-2007-4567, Important)

* a flaw was found in each of the following Intel PRO/1000 Linux drivers in
the Linux kernel: e1000 and e1000e. A remote attacker using packets larger
than the MTU could bypass the existing fragment check, resulting in
partial, invalid frames being passed to the network stack. These flaws
could also possibly be used to trigger a remote denial of service.
(CVE-2009-4536, CVE-2009-4538, Important)

* a flaw was found in the Realtek r8169 Ethernet driver in the Linux
kernel. Receiving overly-long frames with network cards supported by this
driver could possibly result in a remote denial of service. (CVE-2009-4537,
Important)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-07" />
        <updated date="2010-01-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-4567.html">CVE-2007-4567</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4536.html">CVE-2009-4536</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4537.html">CVE-2009-4537</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4538.html">CVE-2009-4538</cve>
                <bugzilla href="http://bugzilla.redhat.com/548641" id="548641">CVE-2007-4567 kernel: ipv6_hop_jumbo remote system crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/550907" id="550907">CVE-2009-4537 kernel: r8169 issue reported at 26c3</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/551214" id="551214">CVE-2009-4538 kernel: e1000e frame fragment issue</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552126" id="552126">CVE-2009-4536 kernel: e1000 issue reported at 26c3</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019004" comment="kernel-headers is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019002" comment="kernel is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019024" comment="kernel-doc is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019022" comment="kernel-PAE-devel is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019012" comment="kernel-devel is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019006" comment="kernel-debug is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019016" comment="kernel-kdump is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019008" comment="kernel-xen-devel is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019014" comment="kernel-debug-devel is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019020" comment="kernel-PAE is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019018" comment="kernel-kdump-devel is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100019010" comment="kernel-xen is earlier than 0:2.6.18-164.10.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100020" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0020: kernel security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0020-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0020.html" />
          <reference source="CVE" ref_id="CVE-2009-4536" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4536.html" />
          <reference source="CVE" ref_id="CVE-2009-4537" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4537.html" />
          <reference source="CVE" ref_id="CVE-2009-4538" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4538.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* a flaw was found in each of the following Intel PRO/1000 Linux drivers in
the Linux kernel: e1000 and e1000e. A remote attacker using packets larger
than the MTU could bypass the existing fragment check, resulting in
partial, invalid frames being passed to the network stack. These flaws
could also possibly be used to trigger a remote denial of service.
(CVE-2009-4536, CVE-2009-4538, Important)

* a flaw was found in the Realtek r8169 Ethernet driver in the Linux
kernel. Receiving overly-long frames with network cards supported by this
driver could possibly result in a remote denial of service. (CVE-2009-4537,
Important)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-07" />
        <updated date="2010-01-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4536.html">CVE-2009-4536</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4537.html">CVE-2009-4537</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4538.html">CVE-2009-4538</cve>
                <bugzilla href="http://bugzilla.redhat.com/550907" id="550907">CVE-2009-4537 kernel: r8169 issue reported at 26c3</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/551214" id="551214">CVE-2009-4538 kernel: e1000e frame fragment issue</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552126" id="552126">CVE-2009-4536 kernel: e1000 issue reported at 26c3</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020002" comment="kernel is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020022" comment="kernel-doc is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020004" comment="kernel-devel is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020006" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020018" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020010" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020008" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020014" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020012" comment="kernel-xenU is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020020" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100020016" comment="kernel-smp is earlier than 0:2.6.9-89.0.19.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100029" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0029: krb5 security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0029-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0029.html" />
          <reference source="CVE" ref_id="CVE-2009-4212" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4212.html" />
    
    <description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other using symmetric encryption and a
trusted third party, the Key Distribution Center (KDC).

Multiple integer underflow flaws, leading to heap-based corruption, were
found in the way the MIT Kerberos Key Distribution Center (KDC) decrypted
ciphertexts encrypted with the Advanced Encryption Standard (AES) and
ARCFOUR (RC4) encryption algorithms. If a remote KDC client were able to
provide a specially-crafted AES- or RC4-encrypted ciphertext or texts, it
could potentially lead to either a denial of service of the central KDC
(KDC crash or abort upon processing the crafted ciphertext), or arbitrary
code execution with the privileges of the KDC (i.e., root privileges).
(CVE-2009-4212)

All krb5 users should upgrade to these updated packages, which contain a
backported patch to correct these issues. All running services using the
MIT Kerberos libraries must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-12" />
        <updated date="2010-01-12" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4212.html">CVE-2009-4212</cve>
                <bugzilla href="http://bugzilla.redhat.com/545015" id="545015">CVE-2009-4212 krb: KDC integer overflows in AES and RC4 decryption routines (MITKRB5-SA-2009-004)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:rhel_eus</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029006" comment="krb5-libs is earlier than 0:1.6.1-36.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029007" comment="krb5-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029004" comment="krb5-devel is earlier than 0:1.6.1-36.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029005" comment="krb5-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029010" comment="krb5-server is earlier than 0:1.6.1-36.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029011" comment="krb5-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029002" comment="krb5 is earlier than 0:1.6.1-36.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029003" comment="krb5 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029008" comment="krb5-workstation is earlier than 0:1.6.1-36.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029009" comment="krb5-workstation is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029015" comment="krb5-libs is earlier than 0:1.2.7-71" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029016" comment="krb5-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029017" comment="krb5-devel is earlier than 0:1.2.7-71" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029018" comment="krb5-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029019" comment="krb5-server is earlier than 0:1.2.7-71" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029020" comment="krb5-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029013" comment="krb5 is earlier than 0:1.2.7-71" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029014" comment="krb5 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029021" comment="krb5-workstation is earlier than 0:1.2.7-71" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029022" comment="krb5-workstation is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029026" comment="krb5-libs is earlier than 0:1.3.4-62.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029016" comment="krb5-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029028" comment="krb5-devel is earlier than 0:1.3.4-62.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029018" comment="krb5-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029027" comment="krb5-server is earlier than 0:1.3.4-62.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029020" comment="krb5-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029024" comment="krb5 is earlier than 0:1.3.4-62.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029014" comment="krb5 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029025" comment="krb5-workstation is earlier than 0:1.3.4-62.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029022" comment="krb5-workstation is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100037" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0037: acroread security and bug fix update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0037-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0037.html" />
          <reference source="CVE" ref_id="CVE-2009-3953" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3953.html" />
          <reference source="CVE" ref_id="CVE-2009-3954" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3954.html" />
          <reference source="CVE" ref_id="CVE-2009-3955" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3955.html" />
          <reference source="CVE" ref_id="CVE-2009-3956" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3956.html" />
          <reference source="CVE" ref_id="CVE-2009-3959" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3959.html" />
          <reference source="CVE" ref_id="CVE-2009-4324" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4324.html" />
    
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes several vulnerabilities in Adobe Reader. These
vulnerabilities are summarized on the Adobe Security Advisory APSB10-02
page listed in the References section. A specially-crafted PDF file could
cause Adobe Reader to crash or, potentially, execute arbitrary code as the
user running Adobe Reader when opened. (CVE-2009-4324, CVE-2009-3953,
CVE-2009-3954, CVE-2009-3955, CVE-2009-3959, CVE-2009-3956)

This update also fixes the following bugs:

* the acroread process continued to run even after closing a PDF file. If
multiple PDF files were opened and then closed, the acroread processes
continued to run and consume system resources (up to 100% CPU usage). With
this update, the acroread process correctly exits, which resolves this
issue. (BZ#473217)

* the PPKLite.api plug-in was missing, causing Adobe Reader to crash when
attempting to open signed PDF files. For such files, if an immediate crash
was not observed, clicking on the Signature Panel could trigger one. With
this update, the PPKLite.api plug-in is included, which resolves this
issue. (BZ#472975)

* Adobe Reader has been upgraded to version 9.3. (BZ#497957)

Adobe have discontinued support for Adobe Reader 8 for Linux. All users of
Adobe Reader are advised to install these updated packages, which contain
Adobe Reader version 9.3, which is not vulnerable to these issues and fixes
these bugs. All running instances of Adobe Reader must be restarted for the
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-13" />
        <updated date="2010-01-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3953.html">CVE-2009-3953</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3954.html">CVE-2009-3954</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3955.html">CVE-2009-3955</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3956.html">CVE-2009-3956</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3959.html">CVE-2009-3959</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4324.html">CVE-2009-4324</cve>
                <bugzilla href="http://bugzilla.redhat.com/472975" id="472975">acroread missing PPKLite.api and crashes on signed PDFs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/473217" id="473217">acroread takes 100% cpu and does not die when killed</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547799" id="547799">CVE-2009-4324 acroread: media.newplayer JavaScript API code execution vulnerability (APSB10-02)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/554293" id="554293">CVE-2009-3953 CVE-2009-3954 CVE-2009-3955 CVE-2009-3959 acroread: multiple code execution flaws (APSB10-02)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/554296" id="554296">CVE-2009-3956 acroread: script injection vulnerability (APSB10-02)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100037004" comment="acroread-plugin is earlier than 0:9.3-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100037002" comment="acroread is earlier than 0:9.3-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100039" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0039: gcc and gcc4 security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0039-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0039.html" />
          <reference source="CVE" ref_id="CVE-2009-3736" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3736.html" />
    
    <description>The gcc and gcc4 packages include, among others, C, C++, and Java GNU
compilers and related support libraries. libgcj contains a copy of GNU
Libtool's libltdl library.

A flaw was found in the way GNU Libtool's libltdl library looked for
libraries to load. It was possible for libltdl to load a malicious library
from the current working directory. In certain configurations, if a local
attacker is able to trick a local user into running a Java application
(which uses a function to load native libraries, such as
System.loadLibrary) from within an attacker-controlled directory containing
a malicious library or module, the attacker could possibly execute
arbitrary code with the privileges of the user running the Java
application. (CVE-2009-3736)

All gcc and gcc4 users should upgrade to these updated packages, which
contain a backported patch to correct this issue. All running Java
applications using libgcj must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-13" />
        <updated date="2010-01-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3736.html">CVE-2009-3736</cve>
                <bugzilla href="http://bugzilla.redhat.com/537941" id="537941">CVE-2009-3736 libtool: libltdl may load and execute code from a library in the current directory</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039034" comment="gcc-objc++ is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039035" comment="gcc-objc++ is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039032" comment="libgfortran is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039033" comment="libgfortran is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039010" comment="libgcj-src is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039011" comment="libgcj-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039008" comment="libmudflap is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039009" comment="libmudflap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039004" comment="gcc-gfortran is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039005" comment="gcc-gfortran is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039026" comment="libgcj-devel is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039027" comment="libgcj-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039022" comment="libgcc is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039023" comment="libgcc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039030" comment="cpp is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039031" comment="cpp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039038" comment="gcc-gnat is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039039" comment="gcc-gnat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039016" comment="libstdc++ is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039017" comment="libstdc++ is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039012" comment="libmudflap-devel is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039013" comment="libmudflap-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039018" comment="gcc-objc is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039019" comment="gcc-objc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039006" comment="gcc-c++ is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039007" comment="gcc-c++ is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039002" comment="gcc is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039003" comment="gcc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039028" comment="gcc-java is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039029" comment="gcc-java is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039036" comment="libgnat is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039037" comment="libgnat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039024" comment="libgcj is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039025" comment="libgcj is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039014" comment="libstdc++-devel is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039015" comment="libstdc++-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039020" comment="libobjc is earlier than 0:4.1.2-46.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039021" comment="libobjc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039071" comment="gcc-g77 is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039072" comment="gcc-g77 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039065" comment="libgcc is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039066" comment="libgcc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039051" comment="libgcj-devel is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039052" comment="libgcj-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039063" comment="cpp is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039064" comment="cpp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039055" comment="gcc-gnat is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039056" comment="gcc-gnat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039043" comment="libstdc++ is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039044" comment="libstdc++ is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039073" comment="gcc-objc is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039074" comment="gcc-objc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039057" comment="libf2c is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039058" comment="libf2c is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039047" comment="gcc-c++ is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039048" comment="gcc-c++ is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039045" comment="gcc-c++-ppc32 is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039046" comment="gcc-c++-ppc32 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039041" comment="gcc is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039042" comment="gcc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039069" comment="gcc-java is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039070" comment="gcc-java is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039061" comment="libgcj is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039062" comment="libgcj is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039059" comment="libgnat is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039060" comment="libgnat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039053" comment="libstdc++-devel is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039054" comment="libstdc++-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039067" comment="gcc-ppc32 is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039068" comment="gcc-ppc32 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039049" comment="libobjc is earlier than 0:3.2.3-60" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039050" comment="libobjc is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039090" comment="libgfortran is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039091" comment="libgfortran is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039088" comment="libgcj4 is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039089" comment="libgcj4 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039096" comment="libmudflap is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039097" comment="libmudflap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039084" comment="gcc4-gfortran is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039085" comment="gcc4-gfortran is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039094" comment="gcc4-c++ is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039095" comment="gcc4-c++ is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039086" comment="libmudflap-devel is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039087" comment="libmudflap-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039082" comment="libgomp is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039083" comment="libgomp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039092" comment="gcc4-java is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039093" comment="gcc4-java is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039080" comment="libgcj4-src is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039081" comment="libgcj4-src is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039076" comment="gcc4 is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039077" comment="gcc4 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039078" comment="libgcj4-devel is earlier than 0:4.1.2-44.EL4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039079" comment="libgcj4-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039101" comment="gcc-g77 is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039072" comment="gcc-g77 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039112" comment="libgcj-devel is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039052" comment="libgcj-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039102" comment="libgcc is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039066" comment="libgcc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039106" comment="cpp is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039064" comment="cpp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039113" comment="gcc-gnat is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039056" comment="gcc-gnat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039103" comment="libstdc++ is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039044" comment="libstdc++ is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039110" comment="gcc-objc is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039074" comment="gcc-objc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039105" comment="gcc-c++-ppc32 is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039046" comment="gcc-c++-ppc32 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039104" comment="libf2c is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039058" comment="libf2c is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039099" comment="gcc-c++ is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039048" comment="gcc-c++ is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039098" comment="gcc is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039042" comment="gcc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039107" comment="gcc-java is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039070" comment="gcc-java is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039114" comment="libgcj is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039062" comment="libgcj is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039109" comment="libgnat is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039060" comment="libgnat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039100" comment="libstdc++-devel is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039054" comment="libstdc++-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039111" comment="libobjc is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039050" comment="libobjc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100039108" comment="gcc-ppc32 is earlier than 0:3.4.6-11.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100039068" comment="gcc-ppc32 is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100040" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0040: php security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0040-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0040.html" />
          <reference source="CVE" ref_id="CVE-2009-2687" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2687.html" />
          <reference source="CVE" ref_id="CVE-2009-3291" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3291.html" />
          <reference source="CVE" ref_id="CVE-2009-3292" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3292.html" />
          <reference source="CVE" ref_id="CVE-2009-3546" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3546.html" />
          <reference source="CVE" ref_id="CVE-2009-4017" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4017.html" />
          <reference source="CVE" ref_id="CVE-2009-4142" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4142.html" />
    
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Web server.

Multiple missing input sanitization flaws were discovered in PHP's exif
extension. A specially-crafted image file could cause the PHP interpreter
to crash or, possibly, disclose portions of its memory when a PHP script
tried to extract Exchangeable image file format (Exif) metadata from the
image file. (CVE-2009-2687, CVE-2009-3292)

A missing input sanitization flaw, leading to a buffer overflow, was
discovered in PHP's gd library. A specially-crafted GD image file could
cause the PHP interpreter to crash or, possibly, execute arbitrary code
when opened. (CVE-2009-3546)

It was discovered that PHP did not limit the maximum number of files that
can be uploaded in one request. A remote attacker could use this flaw to
instigate a denial of service by causing the PHP interpreter to use lots of
system resources dealing with requests containing large amounts of files to
be uploaded. This vulnerability depends on file uploads being enabled
(which it is, in the default PHP configuration). (CVE-2009-4017)

Note: This update introduces a new configuration option, max_file_uploads,
used for limiting the number of files that can be uploaded in one request.
By default, the limit is 20 files per request.

It was discovered that PHP was affected by the previously published "null
prefix attack", caused by incorrect handling of NUL characters in X.509
certificates. If an attacker is able to get a carefully-crafted certificate
signed by a trusted Certificate Authority, the attacker could use the
certificate during a man-in-the-middle attack and potentially confuse PHP
into accepting it by mistake. (CVE-2009-3291)

It was discovered that PHP's htmlspecialchars() function did not properly
recognize partial multi-byte sequences for some multi-byte encodings,
sending them to output without them being escaped. An attacker could use
this flaw to perform a cross-site scripting attack. (CVE-2009-4142)

All php users should upgrade to these updated packages, which contain
backported patches to resolve these issues. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-13" />
        <updated date="2010-01-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2687.html">CVE-2009-2687</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3291.html">CVE-2009-3291</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3292.html">CVE-2009-3292</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3546.html">CVE-2009-3546</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4017.html">CVE-2009-4017</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4142.html">CVE-2009-4142</cve>
                <bugzilla href="http://bugzilla.redhat.com/506896" id="506896">CVE-2009-2687 php: exif_read_data crash on corrupted JPEG files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524222" id="524222">CVE-2009-3292 php: exif extension: Multiple missing sanity checks in EXIF file processing</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524228" id="524228">CVE-2009-3291 php: openssl extension: Incorrect verification of SSL certificate with NUL in name</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/529213" id="529213">CVE-2009-3546 gd: insufficient input validation in _gdGetColors()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/540459" id="540459">CVE-2009-4017 PHP: resource exhaustion attack via upload requests with lots of files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/548516" id="548516">CVE-2009-4142 php: htmlspecialchars() insufficient checking of input for multi-byte encodings</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040038" comment="php-gd is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040039" comment="php-gd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040036" comment="php-soap is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040037" comment="php-soap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040026" comment="php-common is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040027" comment="php-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040016" comment="php-odbc is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040017" comment="php-odbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040020" comment="php-mysql is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040021" comment="php-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040002" comment="php is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040003" comment="php is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040010" comment="php-xmlrpc is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040011" comment="php-xmlrpc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040028" comment="php-cli is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040029" comment="php-cli is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040018" comment="php-mbstring is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040019" comment="php-mbstring is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040024" comment="php-pgsql is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040025" comment="php-pgsql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040014" comment="php-xml is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040015" comment="php-xml is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040034" comment="php-dba is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040035" comment="php-dba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040032" comment="php-devel is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040033" comment="php-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040030" comment="php-bcmath is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040031" comment="php-bcmath is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040022" comment="php-imap is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040023" comment="php-imap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040006" comment="php-ncurses is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040007" comment="php-ncurses is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040004" comment="php-snmp is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040005" comment="php-snmp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040012" comment="php-pdo is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040013" comment="php-pdo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040008" comment="php-ldap is earlier than 0:5.1.6-24.el5_4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040009" comment="php-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040047" comment="php-odbc is earlier than 0:4.3.2-54.ent" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040048" comment="php-odbc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040049" comment="php-mysql is earlier than 0:4.3.2-54.ent" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040050" comment="php-mysql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040041" comment="php is earlier than 0:4.3.2-54.ent" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040042" comment="php is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040043" comment="php-pgsql is earlier than 0:4.3.2-54.ent" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040044" comment="php-pgsql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040045" comment="php-devel is earlier than 0:4.3.2-54.ent" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040046" comment="php-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040051" comment="php-imap is earlier than 0:4.3.2-54.ent" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040052" comment="php-imap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040053" comment="php-ldap is earlier than 0:4.3.2-54.ent" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040054" comment="php-ldap is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040070" comment="php-odbc is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040048" comment="php-odbc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040061" comment="php-gd is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040062" comment="php-gd is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040072" comment="php-mysql is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040050" comment="php-mysql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040056" comment="php is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040042" comment="php is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040059" comment="php-xmlrpc is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040060" comment="php-xmlrpc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040068" comment="php-mbstring is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040069" comment="php-mbstring is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040071" comment="php-pgsql is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040044" comment="php-pgsql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040063" comment="php-devel is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040046" comment="php-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040074" comment="php-snmp is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040075" comment="php-snmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040073" comment="php-imap is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040052" comment="php-imap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040064" comment="php-ncurses is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040065" comment="php-ncurses is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040057" comment="php-pear is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040058" comment="php-pear is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040076" comment="php-ldap is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040054" comment="php-ldap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100040066" comment="php-domxml is earlier than 0:4.3.9-3.29" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040067" comment="php-domxml is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100044" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0044: pidgin security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0044-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0044.html" />
          <reference source="CVE" ref_id="CVE-2010-0013" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0013.html" />
    
    <description>Pidgin is an instant messaging program which can log in to multiple
accounts on multiple instant messaging networks simultaneously.

A directory traversal flaw was discovered in Pidgin's MSN protocol
implementation. A remote attacker could send a specially-crafted emoticon
image download request that would cause Pidgin to disclose an arbitrary
file readable to the user running Pidgin. (CVE-2010-0013)

These packages upgrade Pidgin to version 2.6.5. Refer to the Pidgin release
notes for a full list of changes: http://developer.pidgin.im/wiki/ChangeLog

All Pidgin users should upgrade to these updated packages, which correct
this issue. Pidgin must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-14" />
        <updated date="2010-01-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0013.html">CVE-2010-0013</cve>
                <bugzilla href="http://bugzilla.redhat.com/552483" id="552483">CVE-2010-0013 pidgin/libpurple: MSN custom smiley request directory traversal file disclosure</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044014" comment="libpurple is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044015" comment="libpurple is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044008" comment="finch is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044009" comment="finch is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044004" comment="libpurple-perl is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044005" comment="libpurple-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044002" comment="pidgin is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044003" comment="pidgin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044018" comment="libpurple-devel is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044019" comment="libpurple-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044016" comment="pidgin-devel is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044017" comment="pidgin-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044010" comment="finch-devel is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044011" comment="finch-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044006" comment="pidgin-perl is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044007" comment="pidgin-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044012" comment="libpurple-tcl is earlier than 0:2.6.5-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044013" comment="libpurple-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044037" comment="libpurple-perl is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044038" comment="libpurple-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044035" comment="finch is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044036" comment="finch is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044031" comment="libpurple is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044032" comment="libpurple is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044021" comment="pidgin is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044022" comment="pidgin is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044029" comment="pidgin-devel is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044030" comment="pidgin-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044027" comment="finch-devel is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044028" comment="finch-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044025" comment="pidgin-perl is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044026" comment="pidgin-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044023" comment="libpurple-devel is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044024" comment="libpurple-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100044033" comment="libpurple-tcl is earlier than 0:2.6.5-1.el4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044034" comment="libpurple-tcl is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100046" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0046: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0046-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0046.html" />
          <reference source="CVE" ref_id="CVE-2006-6304" ref_url="https://www.redhat.com/security/data/cve/CVE-2006-6304.html" />
          <reference source="CVE" ref_id="CVE-2009-2910" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2910.html" />
          <reference source="CVE" ref_id="CVE-2009-3080" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3080.html" />
          <reference source="CVE" ref_id="CVE-2009-3556" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3556.html" />
          <reference source="CVE" ref_id="CVE-2009-3889" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3889.html" />
          <reference source="CVE" ref_id="CVE-2009-3939" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3939.html" />
          <reference source="CVE" ref_id="CVE-2009-4020" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4020.html" />
          <reference source="CVE" ref_id="CVE-2009-4021" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4021.html" />
          <reference source="CVE" ref_id="CVE-2009-4138" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4138.html" />
          <reference source="CVE" ref_id="CVE-2009-4141" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4141.html" />
          <reference source="CVE" ref_id="CVE-2009-4272" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4272.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security fixes:

* an array index error was found in the gdth driver. A local user could
send a specially-crafted IOCTL request that would cause a denial of service
or, possibly, privilege escalation. (CVE-2009-3080, Important)

* a flaw was found in the FUSE implementation. When a system is low on
memory, fuse_put_request() could dereference an invalid pointer, possibly
leading to a local denial of service or privilege escalation.
(CVE-2009-4021, Important)

* Tavis Ormandy discovered a deficiency in the fasync_helper()
implementation. This could allow a local, unprivileged user to leverage a
use-after-free of locked, asynchronous file descriptors to cause a denial
of service or privilege escalation. (CVE-2009-4141, Important)

* the Parallels Virtuozzo Containers team reported the RHSA-2009:1243
update introduced two flaws in the routing implementation. If an attacker
was able to cause a large enough number of collisions in the routing hash
table (via specially-crafted packets) for the emergency route flush to
trigger, a deadlock could occur. Secondly, if the kernel routing cache was
disabled, an uninitialized pointer would be left behind after a route
lookup, leading to a kernel panic. (CVE-2009-4272, Important)

* the RHSA-2009:0225 update introduced a rewrite attack flaw in the
do_coredump() function. A local attacker able to guess the file name a
process is going to dump its core to, prior to the process crashing, could
use this flaw to append data to the dumped core file. This issue only
affects systems that have "/proc/sys/fs/suid_dumpable" set to 2 (the
default value is 0). (CVE-2006-6304, Moderate)

The fix for CVE-2006-6304 changes the expected behavior: With suid_dumpable
set to 2, the core file will not be recorded if the file already exists.
For example, core files will not be overwritten on subsequent crashes of
processes whose core files map to the same name.

* an information leak was found in the Linux kernel. On AMD64 systems,
32-bit processes could access and read certain 64-bit registers by
temporarily switching themselves to 64-bit mode. (CVE-2009-2910, Moderate)

* the RHBA-2008:0314 update introduced N_Port ID Virtualization (NPIV)
support in the qla2xxx driver, resulting in two new sysfs pseudo files,
"/sys/class/scsi_host/[a qla2xxx host]/vport_create" and "vport_delete".
These two files were world-writable by default, allowing a local user to
change SCSI host attributes. This flaw only affects systems using the
qla2xxx driver and NPIV capable hardware. (CVE-2009-3556, Moderate)

* permission issues were found in the megaraid_sas driver. The "dbg_lvl"
and "poll_mode_io" files on the sysfs file system ("/sys/") had
world-writable permissions. This could allow local, unprivileged users to
change the behavior of the driver. (CVE-2009-3889, CVE-2009-3939, Moderate)

* a NULL pointer dereference flaw was found in the firewire-ohci driver
used for OHCI compliant IEEE 1394 controllers. A local, unprivileged user
with access to /dev/fw* files could issue certain IOCTL calls, causing a
denial of service or privilege escalation. The FireWire modules are
blacklisted by default, and if enabled, only root has access to the files
noted above by default. (CVE-2009-4138, Moderate)

* a buffer overflow flaw was found in the hfs_bnode_read() function in the
HFS file system implementation. This could lead to a denial of service if a
user browsed a specially-crafted HFS file system, for example, by running
"ls". (CVE-2009-4020, Low)

Bug fix documentation for this update will be available shortly from
www.redhat.com/docs/en-US/errata/RHSA-2010-0046/Kernel_Security_Update/
index.html

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-19" />
        <updated date="2010-01-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2006-6304.html">CVE-2006-6304</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2910.html">CVE-2009-2910</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3080.html">CVE-2009-3080</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3556.html">CVE-2009-3556</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3889.html">CVE-2009-3889</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3939.html">CVE-2009-3939</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4020.html">CVE-2009-4020</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4021.html">CVE-2009-4021</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4138.html">CVE-2009-4138</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4141.html">CVE-2009-4141</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4272.html">CVE-2009-4272</cve>
                <bugzilla href="http://bugzilla.redhat.com/526068" id="526068">CVE-2009-3889 CVE-2009-3939 kernel: megaraid_sas permissions in sysfs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526788" id="526788">CVE-2009-2910 kernel: x86_64 32 bit process register leak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537027" id="537027">Timedrift on VM with pv_clock enabled, causing system hangs and sporadic time behaviour [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537177" id="537177">CVE-2009-3556 kernel: qla2xxx NPIV vport management pseudofiles are world writable</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537273" id="537273">CVE-2006-6304 kernel: use flag in do_coredump()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/538734" id="538734">CVE-2009-4021 kernel: fuse: prevent fuse_put_request on invalid pointer</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/539414" id="539414">CVE-2009-3080 kernel: gdth: Prevent negative offsets in ioctl</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/539686" id="539686">bnx2: panic in bnx2_poll_work() [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/540736" id="540736">CVE-2009-4020 kernel: hfs buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/540896" id="540896">PV clock fix throws off database application time [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/542582" id="542582">kdump corefile cannot be backtraced in IA64 [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/543448" id="543448">Using IPoIB, losing connectivity with 1 host, other hosts accessible [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/544978" id="544978">glock_workqueue -- glock ref count via gfs2_glock_hold [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/545411" id="545411">CVE-2009-4272 kernel: emergency route cache flushing leads to node deadlock</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547236" id="547236">CVE-2009-4138 kernel: firewire: ohci: handle receive packets with a data length of zero</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547521" id="547521">CRM#1971672, Data loss in GFS2 when multiple nodes writes to same file [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547530" id="547530">kernel: BUG: soft lockup - CPU#1 stuck for 13s! [httpd:4490] [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547906" id="547906">CVE-2009-4141 kernel: create_elf_tables can leave urandom in a bad state</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/548370" id="548370">kernel: sleeping vfs_check_frozen in called in atomic context from do_wp_page [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549905" id="549905">hvm, x86_64 guest panic on 2.6.18-164.9.1.el5 [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549906" id="549906">[NetApp 5.4.z bug] Emulex FC ports on RHEL 5.4 GA offlined during target controller faults [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549907" id="549907">Hang when echoing to /proc/sys/net/ipv4/route/secret_interval [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549908" id="549908">resize2fs online resize hangs [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/550968" id="550968">RHEL5.4 guest with PV clock: inconsistent times returned by clock_gettime(CLOCK_REALTIME) and gettimeofday() [rhel-5.4.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046004" comment="kernel-headers is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046002" comment="kernel is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046024" comment="kernel-doc is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046020" comment="kernel-PAE-devel is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046014" comment="kernel-devel is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046010" comment="kernel-debug is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046018" comment="kernel-kdump is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046012" comment="kernel-xen-devel is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046008" comment="kernel-debug-devel is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046022" comment="kernel-PAE is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046016" comment="kernel-kdump-devel is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100046006" comment="kernel-xen is earlier than 0:2.6.18-164.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100054" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0054: openssl security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0054-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0054.html" />
          <reference source="CVE" ref_id="CVE-2009-2409" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2409.html" />
          <reference source="CVE" ref_id="CVE-2009-4355" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4355.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

It was found that the OpenSSL library did not properly re-initialize its
internal state in the SSL_library_init() function after previous calls to
the CRYPTO_cleanup_all_ex_data() function, which would cause a memory leak
for each subsequent SSL connection. This flaw could cause server
applications that call those functions during reload, such as a combination
of the Apache HTTP Server, mod_ssl, PHP, and cURL, to consume all available
memory, resulting in a denial of service. (CVE-2009-4355)

Dan Kaminsky found that browsers could accept certificates with MD2 hash
signatures, even though MD2 is no longer considered a cryptographically
strong algorithm. This could make it easier for an attacker to create a
malicious certificate that would be treated as trusted by a browser.
OpenSSL now disables the use of the MD2 algorithm inside signatures by
default. (CVE-2009-2409)

All OpenSSL users should upgrade to these updated packages, which contain
backported patches to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-19" />
        <updated date="2010-01-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2409.html">CVE-2009-2409</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4355.html">CVE-2009-4355</cve>
                <bugzilla href="http://bugzilla.redhat.com/510197" id="510197">CVE-2009-2409 deprecate MD2 in SSL cert validation (Kaminsky)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546707" id="546707">CVE-2009-4355 openssl significant memory leak in certain SSLv3 requests (DoS)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100054002" comment="openssl is earlier than 0:0.9.8e-12.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054003" comment="openssl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100054004" comment="openssl-perl is earlier than 0:0.9.8e-12.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054005" comment="openssl-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100054006" comment="openssl-devel is earlier than 0:0.9.8e-12.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054007" comment="openssl-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100061" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0061: gzip security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0061-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0061.html" />
          <reference source="CVE" ref_id="CVE-2010-0001" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0001.html" />
    
    <description>The gzip package provides the GNU gzip data compression program.

An integer underflow flaw, leading to an array index error, was found in
the way gzip expanded archive files compressed with the Lempel-Ziv-Welch
(LZW) compression algorithm. If a victim expanded a specially-crafted
archive, it could cause gzip to crash or, potentially, execute arbitrary
code with the privileges of the user running gzip. This flaw only affects
64-bit systems. (CVE-2010-0001)

Red Hat would like to thank Aki Helin of the Oulu University Secure
Programming Group for responsibly reporting this flaw.

Users of gzip should upgrade to this updated package, which contains a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-20" />
        <updated date="2010-01-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0001.html">CVE-2010-0001</cve>
                <bugzilla href="http://bugzilla.redhat.com/554418" id="554418">CVE-2010-0001 gzip: (64 bit) Integer underflow by decompressing LZW format files</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100061002" comment="gzip is earlier than 0:1.3.5-11.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100061003" comment="gzip is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100061005" comment="gzip is earlier than 0:1.3.3-15.rhel3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100061006" comment="gzip is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100061008" comment="gzip is earlier than 0:1.3.3-18.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100061006" comment="gzip is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100062" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0062: bind security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0062-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0062.html" />
          <reference source="CVE" ref_id="CVE-2010-0097" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0097.html" />
          <reference source="CVE" ref_id="CVE-2010-0290" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0290.html" />
          <reference source="CVE" ref_id="CVE-2010-0382" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0382.html" />
    
    <description>The Berkeley Internet Name Domain (BIND) is an implementation of the Domain
Name System (DNS) protocols. BIND includes a DNS server (named); a resolver
library (routines for applications to use when interfacing with DNS); and
tools for verifying that the DNS server is operating correctly.

A flaw was found in the BIND DNSSEC NSEC/NSEC3 validation code. If BIND was
running as a DNSSEC-validating resolver, it could incorrectly cache
NXDOMAIN responses, as if they were valid, for records proven by NSEC or
NSEC3 to exist. A remote attacker could use this flaw to cause a BIND
server to return the bogus, cached NXDOMAIN responses for valid records and
prevent users from retrieving those records (denial of service).
(CVE-2010-0097)

The original fix for CVE-2009-4022 was found to be incomplete. BIND was
incorrectly caching certain responses without performing proper DNSSEC
validation. CNAME and DNAME records could be cached, without proper DNSSEC
validation, when received from processing recursive client queries that
requested DNSSEC records but indicated that checking should be disabled. A
remote attacker could use this flaw to bypass the DNSSEC validation check
and perform a cache poisoning attack if the target BIND server was
receiving such client queries. (CVE-2010-0290)

All BIND users are advised to upgrade to these updated packages, which
contain a backported patch to resolve these issues. After installing the
update, the BIND daemon (named) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-01-20" />
        <updated date="2010-01-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0097.html">CVE-2010-0097</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0290.html">CVE-2010-0290</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0382.html">CVE-2010-0382</cve>
                <bugzilla href="http://bugzilla.redhat.com/554851" id="554851">CVE-2010-0097 BIND DNSSEC NSEC/NSEC3 validation code could cause bogus NXDOMAIN responses</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557121" id="557121">CVE-2010-0290 BIND upstream fix for CVE-2009-4022 is incomplete</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100062016" comment="bind-utils is earlier than 30:9.3.6-4.P1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062017" comment="bind-utils is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100062012" comment="bind-devel is earlier than 30:9.3.6-4.P1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062013" comment="bind-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100062010" comment="bind-libbind-devel is earlier than 30:9.3.6-4.P1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062011" comment="bind-libbind-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100062006" comment="bind-chroot is earlier than 30:9.3.6-4.P1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062007" comment="bind-chroot is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100062008" comment="bind-sdb is earlier than 30:9.3.6-4.P1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062009" comment="bind-sdb is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100062002" comment="bind is earlier than 30:9.3.6-4.P1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062003" comment="bind is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100062004" comment="bind-libs is earlier than 30:9.3.6-4.P1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062005" comment="bind-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100062014" comment="caching-nameserver is earlier than 30:9.3.6-4.P1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062015" comment="caching-nameserver is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100076" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0076: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0076-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0076.html" />
          <reference source="CVE" ref_id="CVE-2009-3080" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3080.html" />
          <reference source="CVE" ref_id="CVE-2009-3889" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3889.html" />
          <reference source="CVE" ref_id="CVE-2009-3939" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3939.html" />
          <reference source="CVE" ref_id="CVE-2009-4005" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4005.html" />
          <reference source="CVE" ref_id="CVE-2009-4020" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4020.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* an array index error was found in the gdth driver in the Linux kernel. A
local user could send a specially-crafted IOCTL request that would cause a
denial of service or, possibly, privilege escalation. (CVE-2009-3080,
Important)

* a flaw was found in the collect_rx_frame() function in the HiSax ISDN
driver (hfc_usb) in the Linux kernel. An attacker could use this flaw to
send a specially-crafted HDLC packet that could trigger a buffer out of
bounds, possibly resulting in a denial of service. (CVE-2009-4005,
Important)

* permission issues were found in the megaraid_sas driver (for SAS based
RAID controllers) in the Linux kernel. The "dbg_lvl" and "poll_mode_io"
files on the sysfs file system ("/sys/") had world-writable permissions.
This could allow local, unprivileged users to change the behavior of the
driver. (CVE-2009-3889, CVE-2009-3939, Moderate)

* a buffer overflow flaw was found in the hfs_bnode_read() function in the
HFS file system implementation in the Linux kernel. This could lead to a
denial of service if a user browsed a specially-crafted HFS file system,
for example, by running "ls". (CVE-2009-4020, Low)

This update also fixes the following bugs:

* if a process was using ptrace() to trace a multi-threaded process, and
that multi-threaded process dumped its core, the process performing the
trace could hang in wait4(). This issue could be triggered by running
"strace -f" on a multi-threaded process that was dumping its core,
resulting in the strace command hanging. (BZ#555869)

* a bug in the ptrace() implementation could have, in some cases, caused
ptrace_detach() to create a zombie process if the process being traced
was terminated with a SIGKILL signal. (BZ#555869)

* the RHSA-2010:0020 update resolved an issue (CVE-2009-4537) in the
Realtek r8169 Ethernet driver. This update implements a better solution for
that issue. Note: This is not a security regression. The original fix was
complete. This update is adding the official upstream fix. (BZ#556406)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-02" />
        <updated date="2010-02-02" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3080.html">CVE-2009-3080</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3889.html">CVE-2009-3889</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3939.html">CVE-2009-3939</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4005.html">CVE-2009-4005</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4020.html">CVE-2009-4020</cve>
                <bugzilla href="http://bugzilla.redhat.com/526068" id="526068">CVE-2009-3889 CVE-2009-3939 kernel: megaraid_sas permissions in sysfs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/539414" id="539414">CVE-2009-3080 kernel: gdth: Prevent negative offsets in ioctl</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/539435" id="539435">CVE-2009-4005 kernel: isdn: hfc_usb: fix read buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/540736" id="540736">CVE-2009-4020 kernel: hfs buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555869" id="555869">[4.7] wait4 blocks on non-existing pid [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/556406" id="556406">kernel: r8169: straighten out overlength frame detection (improved) [rhel-4.9] [rhel-4.8.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076002" comment="kernel is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076022" comment="kernel-doc is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076004" comment="kernel-devel is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076016" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076020" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076012" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076008" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076010" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076006" comment="kernel-xenU is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076018" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100076014" comment="kernel-smp is earlier than 0:2.6.9-89.0.20.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100088" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0088: kvm security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0088-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0088.html" />
          <reference source="CVE" ref_id="CVE-2010-0297" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0297.html" />
          <reference source="CVE" ref_id="CVE-2010-0298" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0298.html" />
          <reference source="CVE" ref_id="CVE-2010-0306" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0306.html" />
          <reference source="CVE" ref_id="CVE-2010-0309" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0309.html" />
    
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. KVM is a Linux kernel module built for
the standard Red Hat Enterprise Linux kernel.

The x86 emulator implementation was missing a check for the Current
Privilege Level (CPL) and I/O Privilege Level (IOPL). A user in a guest
could leverage these flaws to cause a denial of service (guest crash) or
possibly escalate their privileges within that guest. (CVE-2010-0298,
CVE-2010-0306)

A flaw was found in the Programmable Interval Timer (PIT) emulation. Access
to the internal data structure pit_state, which represents the data state
of the emulated PIT, was not properly validated in the pit_ioport_read()
function. A privileged guest user could use this flaw to crash the host.
(CVE-2010-0309)

A flaw was found in the USB passthrough handling code. A specially-crafted
USB packet sent from inside a guest could be used to trigger a buffer
overflow in the usb_host_handle_control() function, which runs under the
QEMU-KVM context on the host. A user in a guest could leverage this flaw to
cause a denial of service (guest hang or crash) or possibly escalate their
privileges within the host. (CVE-2010-0297)

This update also fixes the following bugs: 

* pvclock MSR values were not preserved during remote migration, causing
time drift for guests. (BZ#537028)

* SMBIOS table 4 data is now generated for Windows guests. (BZ#545874)

* if the qemu-kvm "-net user" option was used, unattended Windows XP
installations did not receive an IP address after reboot. (BZ#546562)

* when being restored from migration, a race condition caused Windows
Server 2008 R2 guests to hang during shutdown. (BZ#546563)

* the kernel symbol checking on the kvm-kmod build process has a safety
check for ABI changes. (BZ#547293)

* on hosts without high-res timers, Windows Server 2003 guests experienced
significant time drift. (BZ#547625)

* in some situations, installing Windows Server 2008 R2 from an ISO image
resulted in a blue screen "BAD_POOL_HEADER" stop error. (BZ#548368)

* a bug in the grow_refcount_table() error handling caused infinite
recursion in some cases. This caused the qemu-kvm process to hang and
eventually crash. (BZ#552159)

* for Windows Server 2003 R2, Service Pack 2, 32-bit guests, an "unhandled
vm exit" error could occur during reboot on some systems. (BZ#552518)

* for Windows guests, QEMU could attempt to stop a stopped audio device,
resulting in a "snd_playback_stop: ASSERT playback_channel->base.active
failed" error. (BZ#552519)

* the Hypercall driver did not reset the device on power-down. (BZ#552528)

* mechanisms have been added to make older savevm versions to be emitted in
some cases. (BZ#552529)

* an error in the Makefile prevented users from using the source RPM to
install KVM. (BZ#552530)

* guests became unresponsive and could use up to 100% CPU when running
certain benchmark tests with more than 7 guests running simultaneously.
(BZ#553249)

* QEMU could terminate randomly with virtio-net and SMP enabled.
(BZ#561022)

All KVM users should upgrade to these updated packages, which contain
backported patches to resolve these issues. Note: The procedure in the
Solution section must be performed before this update will take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-09" />
        <updated date="2010-02-09" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0297.html">CVE-2010-0297</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0298.html">CVE-2010-0298</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0306.html">CVE-2010-0306</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0309.html">CVE-2010-0309</cve>
                <bugzilla href="http://bugzilla.redhat.com/537028" id="537028">pvclock msr values are not preserved across remote migration</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/545874" id="545874">Need to generate SMBIOS table 4 data for windows guests</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546562" id="546562">Windows XP unattended install doesn't get an IP address after rebooting, if using -net user</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546563" id="546563">Windows Server 2008 R2 shutdown hangs after restore from migration</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547293" id="547293">kvm kmod package should filter only some specific ksym dependencies</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547625" id="547625">time drift in win2k364 KVM guest</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/548368" id="548368">BSOD BAD_POOL_HEADER STOP 0x19 during boot of Windows Server 2008 R2 installer</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552159" id="552159">qcow2: infinite recursion on grow_refcount_table() error handling</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552518" id="552518">Rhev-Block driver causes  'unhandled vm exit' with 32bit win2k3r2sp2 Guest VM  on restart</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552519" id="552519">KVM : QEMU-Audio attempting to stop unactivated audio device (snd_playback_stop: ASSERT playback_channel->base.active failed).</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552528" id="552528">Hypercall driver doesn't reset device on power-down</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552529" id="552529">kvm: migration: mechanism to make older savevm versions to be emitted on some cases</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552530" id="552530">Build tree for RHEL 5.X and RHEL 5.4.z contains build bugs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/553249" id="553249">hypercall device - Vm becomes non responsive on Sysmark benchmark (when more than 7 vm's running simultaneously)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557025" id="557025">CVE-2010-0297 kvm-userspace-rhel5: usb-linux.c: fix buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559091" id="559091">CVE-2010-0298 kvm: emulator privilege escalation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/560654" id="560654">CVE-2010-0306 kvm: emulator privilege escalation IOPL/CPL level check</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/560887" id="560887">CVE-2010-0309 kvm: cat /dev/port in guest cause the host hang</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561022" id="561022">QEMU terminates without warning with virtio-net and SMP enabled</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100088008" comment="kvm-qemu-img is earlier than 0:83-105.el5_4.22" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088009" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100088002" comment="kvm is earlier than 0:83-105.el5_4.22" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088003" comment="kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100088006" comment="kmod-kvm is earlier than 0:83-105.el5_4.22" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088007" comment="kmod-kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100088004" comment="kvm-tools is earlier than 0:83-105.el5_4.22" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088005" comment="kvm-tools is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100094" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0094: HelixPlayer security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0094-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0094.html" />
          <reference source="CVE" ref_id="CVE-2009-4242" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4242.html" />
          <reference source="CVE" ref_id="CVE-2009-4245" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4245.html" />
          <reference source="CVE" ref_id="CVE-2009-4247" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4247.html" />
          <reference source="CVE" ref_id="CVE-2009-4248" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4248.html" />
          <reference source="CVE" ref_id="CVE-2009-4257" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4257.html" />
          <reference source="CVE" ref_id="CVE-2010-0416" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0416.html" />
          <reference source="CVE" ref_id="CVE-2010-0417" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0417.html" />
          <reference source="CVE" ref_id="CVE-2010-4376" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4376.html" />
    
    <description>HelixPlayer is a media player.

Multiple buffer and integer overflow flaws were found in the way
HelixPlayer processed Graphics Interchange Format (GIF) files. An attacker
could create a specially-crafted GIF file which would cause HelixPlayer to
crash or, potentially, execute arbitrary code when opened. (CVE-2009-4242,
CVE-2009-4245)

A buffer overflow flaw was found in the way HelixPlayer processed
Synchronized Multimedia Integration Language (SMIL) files. An attacker
could create a specially-crafted SMIL file which would cause HelixPlayer to
crash or, potentially, execute arbitrary code when opened. (CVE-2009-4257)

A buffer overflow flaw was found in the way HelixPlayer handled the Real
Time Streaming Protocol (RTSP) SET_PARAMETER directive. A malicious RTSP
server could use this flaw to crash HelixPlayer or, potentially, execute
arbitrary code. (CVE-2009-4248)

Multiple buffer overflow flaws were discovered in the way HelixPlayer
handled RuleBook structures in media files and RTSP streams.
Specially-crafted input could cause HelixPlayer to crash or, potentially,
execute arbitrary code. (CVE-2009-4247, CVE-2010-0417)

A buffer overflow flaw was found in the way HelixPlayer performed URL
un-escaping. A specially-crafted URL string could cause HelixPlayer to
crash or, potentially, execute arbitrary code. (CVE-2010-0416)

All HelixPlayer users are advised to upgrade to this updated package,
which contains backported patches to resolve these issues. All running
instances of HelixPlayer must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-09" />
        <updated date="2010-02-09" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4242.html">CVE-2009-4242</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4245.html">CVE-2009-4245</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4247.html">CVE-2009-4247</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4248.html">CVE-2009-4248</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4257.html">CVE-2009-4257</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0416.html">CVE-2010-0416</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0417.html">CVE-2010-0417</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4376.html">CVE-2010-4376</cve>
                <bugzilla href="http://bugzilla.redhat.com/561309" id="561309">CVE-2009-4257 HelixPlayer / RealPlayer: SMIL getAtom heap buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561338" id="561338">CVE-2009-4247 HelixPlayer / RealPlayer: RTSP client ASM RuleBook stack buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561361" id="561361">CVE-2009-4248 HelixPlayer / RealPlayer: RTSP SET_PARAMETER buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561436" id="561436">CVE-2009-4242 HelixPlayer / RealPlayer: GIF file heap overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561441" id="561441">CVE-2009-4245 HelixPlayer / RealPlayer: compressed GIF heap overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561856" id="561856">CVE-2010-0416 HelixPlayer / RealPlayer: URL unescape buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561860" id="561860">CVE-2010-0417 HelixPlayer / RealPlayer: rule book handling heap corruption</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100094002" comment="HelixPlayer is earlier than 1:1.0.6-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100094003" comment="HelixPlayer is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100101" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0101: openoffice.org security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0101-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0101.html" />
          <reference source="CVE" ref_id="CVE-2009-2949" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2949.html" />
          <reference source="CVE" ref_id="CVE-2009-2950" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2950.html" />
          <reference source="CVE" ref_id="CVE-2009-3301" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3301.html" />
          <reference source="CVE" ref_id="CVE-2009-3302" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3302.html" />
    
    <description>OpenOffice.org is an office productivity suite that includes desktop
applications, such as a word processor, spreadsheet application,
presentation manager, formula editor, and a drawing program.

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way OpenOffice.org parsed XPM files. An attacker could create
a specially-crafted document, which once opened by a local, unsuspecting
user, could lead to arbitrary code execution with the permissions of the
user running OpenOffice.org. Note: This flaw affects embedded XPM files in
OpenOffice.org documents as well as stand-alone XPM files. (CVE-2009-2949)

An integer underflow flaw and a boundary error flaw, both possibly leading
to a heap-based buffer overflow, were found in the way OpenOffice.org
parsed certain records in Microsoft Word documents. An attacker could
create a specially-crafted Microsoft Word document, which once opened by a
local, unsuspecting user, could cause OpenOffice.org to crash or,
potentially, execute arbitrary code with the permissions of the user
running OpenOffice.org. (CVE-2009-3301, CVE-2009-3302)

A heap-based buffer overflow flaw, leading to memory corruption, was found
in the way OpenOffice.org parsed GIF files. An attacker could create a
specially-crafted document, which once opened by a local, unsuspecting
user, could cause OpenOffice.org to crash. Note: This flaw affects embedded
GIF files in OpenOffice.org documents as well as stand-alone GIF files.
(CVE-2009-2950)

All users of OpenOffice.org are advised to upgrade to these updated
packages, which contain backported patches to correct these issues. All
running instances of OpenOffice.org applications must be restarted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-12" />
        <updated date="2010-02-12" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2949.html">CVE-2009-2949</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2950.html">CVE-2009-2950</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3301.html">CVE-2009-3301</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3302.html">CVE-2009-3302</cve>
                <bugzilla href="http://bugzilla.redhat.com/527512" id="527512">CVE-2009-2950 openoffice.org: GIF file parsing heap overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/527540" id="527540">CVE-2009-2949 openoffice.org: integer overflow in XPM processing</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533038" id="533038">CVE-2009-3301 OpenOffice.org Word sprmTDefTable Memory Corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533043" id="533043">CVE-2009-3302 OpenOffice.org Word sprmTSetBrc Memory Corruption</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101152" comment="openoffice.org-langpack-tn_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101153" comment="openoffice.org-langpack-tn_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101002" comment="openoffice.org is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101003" comment="openoffice.org is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101030" comment="openoffice.org-langpack-xh_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101031" comment="openoffice.org-langpack-xh_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101020" comment="openoffice.org-langpack-af_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101021" comment="openoffice.org-langpack-af_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101140" comment="openoffice.org-langpack-tr_TR is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101141" comment="openoffice.org-langpack-tr_TR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101058" comment="openoffice.org-langpack-te_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101059" comment="openoffice.org-langpack-te_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101064" comment="openoffice.org-calc is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101065" comment="openoffice.org-calc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101074" comment="openoffice.org-langpack-ss_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101075" comment="openoffice.org-langpack-ss_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101028" comment="openoffice.org-langpack-ml_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101029" comment="openoffice.org-langpack-ml_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101066" comment="openoffice.org-langpack-nl is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101067" comment="openoffice.org-langpack-nl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101046" comment="openoffice.org-langpack-nn_NO is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101047" comment="openoffice.org-langpack-nn_NO is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101134" comment="openoffice.org-headless is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101135" comment="openoffice.org-headless is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101098" comment="openoffice.org-testtools is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101099" comment="openoffice.org-testtools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101012" comment="openoffice.org-langpack-nb_NO is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101013" comment="openoffice.org-langpack-nb_NO is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101088" comment="openoffice.org-langpack-ta_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101089" comment="openoffice.org-langpack-ta_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101040" comment="openoffice.org-langpack-it is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101041" comment="openoffice.org-langpack-it is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101026" comment="openoffice.org-langpack-el_GR is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101027" comment="openoffice.org-langpack-el_GR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101106" comment="openoffice.org-base is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101107" comment="openoffice.org-base is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101144" comment="openoffice.org-draw is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101145" comment="openoffice.org-draw is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101024" comment="openoffice.org-langpack-da_DK is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101025" comment="openoffice.org-langpack-da_DK is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101120" comment="openoffice.org-langpack-ca_ES is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101121" comment="openoffice.org-langpack-ca_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101084" comment="openoffice.org-langpack-es is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101085" comment="openoffice.org-langpack-es is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101118" comment="openoffice.org-langpack-cs_CZ is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101119" comment="openoffice.org-langpack-cs_CZ is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101154" comment="openoffice.org-langpack-nr_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101155" comment="openoffice.org-langpack-nr_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101032" comment="openoffice.org-langpack-ar is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101033" comment="openoffice.org-langpack-ar is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101090" comment="openoffice.org-langpack-sl_SI is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101091" comment="openoffice.org-langpack-sl_SI is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101102" comment="openoffice.org-langpack-kn_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101103" comment="openoffice.org-langpack-kn_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101096" comment="openoffice.org-langpack-as_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101097" comment="openoffice.org-langpack-as_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101004" comment="openoffice.org-langpack-ts_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101005" comment="openoffice.org-langpack-ts_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101150" comment="openoffice.org-langpack-pt_PT is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101151" comment="openoffice.org-langpack-pt_PT is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101100" comment="openoffice.org-langpack-ja_JP is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101101" comment="openoffice.org-langpack-ja_JP is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101108" comment="openoffice.org-langpack-sk_SK is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101109" comment="openoffice.org-langpack-sk_SK is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101006" comment="openoffice.org-langpack-zh_TW is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101007" comment="openoffice.org-langpack-zh_TW is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101124" comment="openoffice.org-langpack-st_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101125" comment="openoffice.org-langpack-st_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101042" comment="openoffice.org-langpack-ru is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101043" comment="openoffice.org-langpack-ru is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101022" comment="openoffice.org-xsltfilter is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101023" comment="openoffice.org-xsltfilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101126" comment="openoffice.org-langpack-cy_GB is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101127" comment="openoffice.org-langpack-cy_GB is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101048" comment="openoffice.org-langpack-fi_FI is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101049" comment="openoffice.org-langpack-fi_FI is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101112" comment="openoffice.org-langpack-pa_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101113" comment="openoffice.org-langpack-pa_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101136" comment="openoffice.org-langpack-he_IL is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101137" comment="openoffice.org-langpack-he_IL is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101060" comment="openoffice.org-langpack-ms_MY is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101061" comment="openoffice.org-langpack-ms_MY is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101114" comment="openoffice.org-langpack-bn is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101115" comment="openoffice.org-langpack-bn is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101092" comment="openoffice.org-graphicfilter is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101093" comment="openoffice.org-graphicfilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101068" comment="openoffice.org-pyuno is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101069" comment="openoffice.org-pyuno is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101044" comment="openoffice.org-writer is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101045" comment="openoffice.org-writer is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101094" comment="openoffice.org-langpack-bg_BG is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101095" comment="openoffice.org-langpack-bg_BG is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101142" comment="openoffice.org-langpack-pl_PL is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101143" comment="openoffice.org-langpack-pl_PL is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101082" comment="openoffice.org-langpack-hr_HR is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101083" comment="openoffice.org-langpack-hr_HR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101078" comment="openoffice.org-sdk is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101079" comment="openoffice.org-sdk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101034" comment="openoffice.org-langpack-hi_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101035" comment="openoffice.org-langpack-hi_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101104" comment="openoffice.org-langpack-fr is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101105" comment="openoffice.org-langpack-fr is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101128" comment="openoffice.org-langpack-pt_BR is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101129" comment="openoffice.org-langpack-pt_BR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101138" comment="openoffice.org-math is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101139" comment="openoffice.org-math is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101056" comment="openoffice.org-langpack-gu_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101057" comment="openoffice.org-langpack-gu_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101080" comment="openoffice.org-langpack-zu_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101081" comment="openoffice.org-langpack-zu_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101036" comment="openoffice.org-langpack-ur is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101037" comment="openoffice.org-langpack-ur is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101014" comment="openoffice.org-core is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101015" comment="openoffice.org-core is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101070" comment="openoffice.org-langpack-mr_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101071" comment="openoffice.org-langpack-mr_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101110" comment="openoffice.org-impress is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101111" comment="openoffice.org-impress is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101122" comment="openoffice.org-langpack-gl_ES is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101123" comment="openoffice.org-langpack-gl_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101076" comment="openoffice.org-langpack-et_EE is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101077" comment="openoffice.org-langpack-et_EE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101116" comment="openoffice.org-langpack-ko_KR is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101117" comment="openoffice.org-langpack-ko_KR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101010" comment="openoffice.org-langpack-hu_HU is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101011" comment="openoffice.org-langpack-hu_HU is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101086" comment="openoffice.org-langpack-nso_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101087" comment="openoffice.org-langpack-nso_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101018" comment="openoffice.org-langpack-sr_CS is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101019" comment="openoffice.org-langpack-sr_CS is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101132" comment="openoffice.org-sdk-doc is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101133" comment="openoffice.org-sdk-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101016" comment="openoffice.org-langpack-or_IN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101017" comment="openoffice.org-langpack-or_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101148" comment="openoffice.org-langpack-ve_ZA is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101149" comment="openoffice.org-langpack-ve_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101146" comment="openoffice.org-emailmerge is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101147" comment="openoffice.org-emailmerge is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101050" comment="openoffice.org-javafilter is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101051" comment="openoffice.org-javafilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101008" comment="openoffice.org-langpack-lt_LT is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101009" comment="openoffice.org-langpack-lt_LT is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101038" comment="openoffice.org-langpack-eu_ES is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101039" comment="openoffice.org-langpack-eu_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101062" comment="openoffice.org-langpack-zh_CN is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101063" comment="openoffice.org-langpack-zh_CN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101054" comment="openoffice.org-langpack-sv is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101055" comment="openoffice.org-langpack-sv is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101072" comment="openoffice.org-langpack-ga_IE is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101073" comment="openoffice.org-langpack-ga_IE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101130" comment="openoffice.org-langpack-de is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101131" comment="openoffice.org-langpack-de is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101052" comment="openoffice.org-langpack-th_TH is earlier than 1:2.3.0-6.11.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101053" comment="openoffice.org-langpack-th_TH is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101161" comment="openoffice.org-i18n is earlier than 0:1.1.2-46.2.0.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101162" comment="openoffice.org-i18n is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101157" comment="openoffice.org is earlier than 0:1.1.2-46.2.0.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101158" comment="openoffice.org is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101159" comment="openoffice.org-libs is earlier than 0:1.1.2-46.2.0.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101160" comment="openoffice.org-libs is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101166" comment="openoffice.org-i18n is earlier than 0:1.1.5-10.6.0.7.EL4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101162" comment="openoffice.org-i18n is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101164" comment="openoffice.org is earlier than 0:1.1.5-10.6.0.7.EL4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101158" comment="openoffice.org is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101167" comment="openoffice.org-kde is earlier than 0:1.1.5-10.6.0.7.EL4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101168" comment="openoffice.org-kde is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101165" comment="openoffice.org-libs is earlier than 0:1.1.5-10.6.0.7.EL4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101160" comment="openoffice.org-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101273" comment="openoffice.org2-langpack-ca_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101274" comment="openoffice.org2-langpack-ca_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101251" comment="openoffice.org2-langpack-ms_MY is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101252" comment="openoffice.org2-langpack-ms_MY is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101245" comment="openoffice.org2-xsltfilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101246" comment="openoffice.org2-xsltfilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101233" comment="openoffice.org2-pyuno is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101234" comment="openoffice.org2-pyuno is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101221" comment="openoffice.org2-langpack-he_IL is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101222" comment="openoffice.org2-langpack-he_IL is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101213" comment="openoffice.org2-langpack-ar is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101214" comment="openoffice.org2-langpack-ar is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101203" comment="openoffice.org2-langpack-af_ZA is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101204" comment="openoffice.org2-langpack-af_ZA is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101183" comment="openoffice.org2-core is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101184" comment="openoffice.org2-core is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101261" comment="openoffice.org2-calc is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101262" comment="openoffice.org2-calc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101249" comment="openoffice.org2-langpack-ta_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101250" comment="openoffice.org2-langpack-ta_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101219" comment="openoffice.org2-emailmerge is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101220" comment="openoffice.org2-emailmerge is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101201" comment="openoffice.org2-langpack-et_EE is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101202" comment="openoffice.org2-langpack-et_EE is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101181" comment="openoffice.org2-base is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101182" comment="openoffice.org2-base is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101275" comment="openoffice.org2-langpack-el_GR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101276" comment="openoffice.org2-langpack-el_GR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101239" comment="openoffice.org2-math is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101240" comment="openoffice.org2-math is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101191" comment="openoffice.org2-langpack-nl is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101192" comment="openoffice.org2-langpack-nl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101237" comment="openoffice.org2-langpack-gl_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101238" comment="openoffice.org2-langpack-gl_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101225" comment="openoffice.org2-writer is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101226" comment="openoffice.org2-writer is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101197" comment="openoffice.org2-langpack-cy_GB is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101198" comment="openoffice.org2-langpack-cy_GB is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101271" comment="openoffice.org2-langpack-it is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101272" comment="openoffice.org2-langpack-it is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101169" comment="openoffice.org2 is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101170" comment="openoffice.org2 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101257" comment="openoffice.org2-langpack-pt_PT is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101258" comment="openoffice.org2-langpack-pt_PT is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101255" comment="openoffice.org2-langpack-sk_SK is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101256" comment="openoffice.org2-langpack-sk_SK is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101241" comment="openoffice.org2-langpack-sr_CS is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101242" comment="openoffice.org2-langpack-sr_CS is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101235" comment="openoffice.org2-langpack-lt_LT is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101236" comment="openoffice.org2-langpack-lt_LT is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101229" comment="openoffice.org2-langpack-bg_BG is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101230" comment="openoffice.org2-langpack-bg_BG is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101223" comment="openoffice.org2-langpack-cs_CZ is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101224" comment="openoffice.org2-langpack-cs_CZ is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101217" comment="openoffice.org2-langpack-hu_HU is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101218" comment="openoffice.org2-langpack-hu_HU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101211" comment="openoffice.org2-langpack-th_TH is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101212" comment="openoffice.org2-langpack-th_TH is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101199" comment="openoffice.org2-langpack-de is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101200" comment="openoffice.org2-langpack-de is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101189" comment="openoffice.org2-langpack-fr is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101190" comment="openoffice.org2-langpack-fr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101187" comment="openoffice.org2-langpack-bn is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101188" comment="openoffice.org2-langpack-bn is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101179" comment="openoffice.org2-draw is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101180" comment="openoffice.org2-draw is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101285" comment="openoffice.org2-javafilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101286" comment="openoffice.org2-javafilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101259" comment="openoffice.org2-langpack-zu_ZA is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101260" comment="openoffice.org2-langpack-zu_ZA is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101247" comment="openoffice.org2-langpack-sl_SI is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101248" comment="openoffice.org2-langpack-sl_SI is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101195" comment="openoffice.org2-langpack-pt_BR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101196" comment="openoffice.org2-langpack-pt_BR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101185" comment="openoffice.org2-langpack-zh_CN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101186" comment="openoffice.org2-langpack-zh_CN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101283" comment="openoffice.org2-testtools is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101284" comment="openoffice.org2-testtools is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101281" comment="openoffice.org2-langpack-ga_IE is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101282" comment="openoffice.org2-langpack-ga_IE is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101267" comment="openoffice.org2-langpack-sv is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101268" comment="openoffice.org2-langpack-sv is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101253" comment="openoffice.org2-langpack-nb_NO is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101254" comment="openoffice.org2-langpack-nb_NO is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101231" comment="openoffice.org2-langpack-eu_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101232" comment="openoffice.org2-langpack-eu_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101177" comment="openoffice.org2-langpack-es is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101178" comment="openoffice.org2-langpack-es is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101175" comment="openoffice.org2-langpack-ru is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101176" comment="openoffice.org2-langpack-ru is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101173" comment="openoffice.org2-langpack-gu_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101174" comment="openoffice.org2-langpack-gu_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101279" comment="openoffice.org2-langpack-ko_KR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101280" comment="openoffice.org2-langpack-ko_KR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101277" comment="openoffice.org2-impress is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101278" comment="openoffice.org2-impress is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101269" comment="openoffice.org2-langpack-pa_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101270" comment="openoffice.org2-langpack-pa_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101263" comment="openoffice.org2-langpack-da_DK is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101264" comment="openoffice.org2-langpack-da_DK is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101265" comment="openoffice.org2-graphicfilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101266" comment="openoffice.org2-graphicfilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101227" comment="openoffice.org2-langpack-pl_PL is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101228" comment="openoffice.org2-langpack-pl_PL is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101215" comment="openoffice.org2-langpack-fi_FI is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101216" comment="openoffice.org2-langpack-fi_FI is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101209" comment="openoffice.org2-langpack-ja_JP is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101210" comment="openoffice.org2-langpack-ja_JP is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101207" comment="openoffice.org2-langpack-zh_TW is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101208" comment="openoffice.org2-langpack-zh_TW is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101205" comment="openoffice.org2-langpack-tr_TR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101206" comment="openoffice.org2-langpack-tr_TR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101193" comment="openoffice.org2-langpack-hi_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101194" comment="openoffice.org2-langpack-hi_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101171" comment="openoffice.org2-langpack-hr_HR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101172" comment="openoffice.org2-langpack-hr_HR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100101243" comment="openoffice.org2-langpack-nn_NO is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101244" comment="openoffice.org2-langpack-nn_NO is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100102" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0102: flash-plugin security update (Important)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0102-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0102.html" />
          <reference source="CVE" ref_id="CVE-2010-0186" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0186.html" />
          <reference source="CVE" ref_id="CVE-2010-0187" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0187.html" />
    
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes two vulnerabilities in Adobe Flash Player. These
vulnerabilities are summarized on the Adobe Security Advisory APSB10-06
page listed in the References section. If a victim loaded a web page
containing specially-crafted SWF content, it could cause Flash Player to
perform unauthorized cross-domain requests, leading to the disclosure of
sensitive data. (CVE-2010-0186, CVE-2010-0187)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.0.45.2.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-12" />
        <updated date="2010-02-12" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0186.html">CVE-2010-0186</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0187.html">CVE-2010-0187</cve>
                <bugzilla href="http://bugzilla.redhat.com/563819" id="563819">CVE-2010-0186 flash-plugin: unauthorized cross-domain requests (APSB10-06)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564287" id="564287">CVE-2010-0187 flash-plugin: possible player crash (APSB10-06)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100102002" comment="flash-plugin is earlier than 0:10.0.45.2-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100102003" comment="flash-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100108" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0108: NetworkManager security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0108-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0108.html" />
          <reference source="CVE" ref_id="CVE-2009-4144" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4144.html" />
          <reference source="CVE" ref_id="CVE-2009-4145" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4145.html" />
    
    <description>NetworkManager is a network link manager that attempts to keep a wired or
wireless network connection active at all times.

A missing network certificate verification flaw was found in
NetworkManager. If a user created a WPA Enterprise or 802.1x wireless
network connection that was verified using a Certificate Authority (CA)
certificate, and then later removed that CA certificate file,
NetworkManager failed to verify the identity of the network on the
following connection attempts. In these situations, a malicious wireless
network spoofing the original network could trick a user into disclosing
authentication credentials or communicating over an untrusted network.
(CVE-2009-4144)

An information disclosure flaw was found in NetworkManager's
nm-connection-editor D-Bus interface. If a user edited network connection
options using nm-connection-editor, a summary of those changes was
broadcasted over the D-Bus message bus, possibly disclosing sensitive
information (such as wireless network authentication credentials) to other
local users. (CVE-2009-4145)

Users of NetworkManager should upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-16" />
        <updated date="2010-02-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4144.html">CVE-2009-4144</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4145.html">CVE-2009-4145</cve>
                <bugzilla href="http://bugzilla.redhat.com/546117" id="546117">CVE-2009-4145 NetworkManager: information disclosure by nm-connection-editor</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546795" id="546795">CVE-2009-4144 NetworkManager: WPA enterprise network not verified when certificate is removed</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100108004" comment="NetworkManager-glib is earlier than 1:0.7.0-9.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108005" comment="NetworkManager-glib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100108008" comment="NetworkManager-devel is earlier than 1:0.7.0-9.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108009" comment="NetworkManager-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100108006" comment="NetworkManager-gnome is earlier than 1:0.7.0-9.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108007" comment="NetworkManager-gnome is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100108010" comment="NetworkManager-glib-devel is earlier than 1:0.7.0-9.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108011" comment="NetworkManager-glib-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100108002" comment="NetworkManager is earlier than 1:0.7.0-9.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108003" comment="NetworkManager is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100109" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0109: mysql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0109-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0109.html" />
          <reference source="CVE" ref_id="CVE-2009-4019" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4019.html" />
          <reference source="CVE" ref_id="CVE-2009-4028" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4028.html" />
          <reference source="CVE" ref_id="CVE-2009-4030" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4030.html" />
    
    <description>MySQL is a multi-user, multi-threaded SQL database server. It consists of
the MySQL server daemon (mysqld) and many client programs and libraries.

It was discovered that the MySQL client ignored certain SSL certificate
verification errors when connecting to servers. A man-in-the-middle
attacker could use this flaw to trick MySQL clients into connecting to a
spoofed MySQL server. (CVE-2009-4028)

Note: This fix may uncover previously hidden SSL configuration issues, such
as incorrect CA certificates being used by clients or expired server
certificates. This update should be carefully tested in deployments where
SSL connections are used.

A flaw was found in the way MySQL handled SELECT statements with subqueries
in the WHERE clause, that assigned results to a user variable. A remote,
authenticated attacker could use this flaw to crash the MySQL server daemon
(mysqld). This issue only caused a temporary denial of service, as the
MySQL daemon was automatically restarted after the crash. (CVE-2009-4019)

When the "datadir" option was configured with a relative path, MySQL did
not properly check paths used as arguments for the DATA DIRECTORY and INDEX
DIRECTORY directives. An authenticated attacker could use this flaw to
bypass the restriction preventing the use of subdirectories of the MySQL
data directory being used as DATA DIRECTORY and INDEX DIRECTORY paths.
(CVE-2009-4030)

Note: Due to the security risks and previous security issues related to the
use of the DATA DIRECTORY and INDEX DIRECTORY directives, users not
depending on this feature should consider disabling it by adding
"symbolic-links=0" to the "[mysqld]" section of the "my.cnf" configuration
file. In this update, an example of such a configuration was added to the
default "my.cnf" file.

All MySQL users are advised to upgrade to these updated packages, which
contain backported patches to resolve these issues. After installing this
update, the MySQL server daemon (mysqld) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-16" />
        <updated date="2010-02-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4019.html">CVE-2009-4019</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4028.html">CVE-2009-4028</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4030.html">CVE-2009-4030</cve>
                <bugzilla href="http://bugzilla.redhat.com/540906" id="540906">CVE-2009-4019 mysql: DoS (crash) when comparing GIS items from subquery and when handling subqueires in WHERE  and assigning a SELECT result to a @variable</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/541233" id="541233">CVE-2009-4028 mysql: client SSL certificate verification flaw</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/543653" id="543653">CVE-2009-4030 mysql: Incomplete fix for CVE-2008-2079 / CVE-2008-4098</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100109008" comment="mysql-test is earlier than 0:5.0.77-4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109009" comment="mysql-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100109002" comment="mysql is earlier than 0:5.0.77-4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109003" comment="mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100109010" comment="mysql-server is earlier than 0:5.0.77-4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109011" comment="mysql-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100109004" comment="mysql-bench is earlier than 0:5.0.77-4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109005" comment="mysql-bench is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100109006" comment="mysql-devel is earlier than 0:5.0.77-4.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109007" comment="mysql-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100110" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0110: mysql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0110-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0110.html" />
          <reference source="CVE" ref_id="CVE-2008-4098" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-4098.html" />
          <reference source="CVE" ref_id="CVE-2008-4456" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-4456.html" />
          <reference source="CVE" ref_id="CVE-2009-2446" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2446.html" />
          <reference source="CVE" ref_id="CVE-2009-4030" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4030.html" />
    
    <description>MySQL is a multi-user, multi-threaded SQL database server. It consists of
the MySQL server daemon (mysqld) and many client programs and libraries.

Multiple flaws were discovered in the way MySQL handled symbolic links to
tables created using the DATA DIRECTORY and INDEX DIRECTORY directives in
CREATE TABLE statements. An attacker with CREATE and DROP table privileges
and shell access to the database server could use these flaws to escalate
their database privileges, or gain access to tables created by other
database users. (CVE-2008-4098, CVE-2009-4030)

Note: Due to the security risks and previous security issues related to the
use of the DATA DIRECTORY and INDEX DIRECTORY directives, users not
depending on this feature should consider disabling it by adding
"symbolic-links=0" to the "[mysqld]" section of the "my.cnf" configuration
file. In this update, an example of such a configuration was added to the
default "my.cnf" file.

An insufficient HTML entities quoting flaw was found in the mysql command
line client's HTML output mode. If an attacker was able to inject arbitrary
HTML tags into data stored in a MySQL database, which was later retrieved
using the mysql command line client and its HTML output mode, they could
perform a cross-site scripting (XSS) attack against victims viewing the
HTML output in a web browser. (CVE-2008-4456)

Multiple format string flaws were found in the way the MySQL server logged
user commands when creating and deleting databases. A remote, authenticated
attacker with permissions to CREATE and DROP databases could use these
flaws to formulate a specially-crafted SQL command that would cause a
temporary denial of service (open connections to mysqld are terminated).
(CVE-2009-2446)

Note: To exploit the CVE-2009-2446 flaws, the general query log (the mysqld
"--log" command line option or the "log" option in "my.cnf") must be
enabled. This logging is not enabled by default.

All MySQL users are advised to upgrade to these updated packages, which
contain backported patches to resolve these issues. After installing this
update, the MySQL server daemon (mysqld) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-16" />
        <updated date="2010-02-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-4098.html">CVE-2008-4098</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-4456.html">CVE-2008-4456</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2446.html">CVE-2009-2446</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4030.html">CVE-2009-4030</cve>
                <bugzilla href="http://bugzilla.redhat.com/454077" id="454077">CVE-2008-4098 mysql: incomplete upstream fix for CVE-2008-2079</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/466518" id="466518">CVE-2008-4456 mysql: mysql command line client XSS flaw</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/511020" id="511020">CVE-2009-2446 MySQL: Format string vulnerability by manipulation with database instances (crash)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/543653" id="543653">CVE-2009-4030 mysql: Incomplete fix for CVE-2008-2079 / CVE-2008-4098</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100110002" comment="mysql is earlier than 0:4.1.22-2.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100110003" comment="mysql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100110004" comment="mysql-server is earlier than 0:4.1.22-2.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100110005" comment="mysql-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100110008" comment="mysql-bench is earlier than 0:4.1.22-2.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100110009" comment="mysql-bench is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100110006" comment="mysql-devel is earlier than 0:4.1.22-2.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100110007" comment="mysql-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100112" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0112: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0112-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0112.html" />
          <reference source="CVE" ref_id="CVE-2009-1571" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1571.html" />
          <reference source="CVE" ref_id="CVE-2009-3988" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3988.html" />
          <reference source="CVE" ref_id="CVE-2010-0159" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0159.html" />
          <reference source="CVE" ref_id="CVE-2010-0160" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0160.html" />
          <reference source="CVE" ref_id="CVE-2010-0162" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0162.html" />
          <reference source="CVE" ref_id="CVE-2010-0167" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0167.html" />
          <reference source="CVE" ref_id="CVE-2010-0169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0169.html" />
          <reference source="CVE" ref_id="CVE-2010-0171" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0171.html" />
    
    <description>Mozilla Firefox is an open source Web browser. XULRunner provides the XUL
Runtime environment for Mozilla Firefox.

A use-after-free flaw was found in Firefox. Under low memory conditions,
visiting a web page containing malicious content could result in Firefox
executing arbitrary code with the privileges of the user running Firefox.
(CVE-2009-1571)

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-0159, CVE-2010-0160)

Two flaws were found in the way certain content was processed. An attacker
could use these flaws to create a malicious web page that could bypass the
same-origin policy, or possibly run untrusted JavaScript. (CVE-2009-3988,
CVE-2010-0162)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.0.18. You can find a link to the Mozilla
advisories in the References section of this errata.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.0.18, which corrects these issues. After installing the
update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-17" />
        <updated date="2010-02-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1571.html">CVE-2009-1571</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3988.html">CVE-2009-3988</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0159.html">CVE-2010-0159</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0160.html">CVE-2010-0160</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0162.html">CVE-2010-0162</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0167.html">CVE-2010-0167</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0169.html">CVE-2010-0169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0171.html">CVE-2010-0171</cve>
                <bugzilla href="http://bugzilla.redhat.com/566047" id="566047">CVE-2010-0159 Mozilla crashes with evidence of memory corruption (MFSA 2010-01)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566049" id="566049">CVE-2010-0160 Mozilla implementation of Web Workers can lead to crash with evidence of memory corruption (MFSA 2010-02)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566050" id="566050">CVE-2009-1571 Mozilla incorrectly frees used memory (MFSA 2010-03)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566051" id="566051">CVE-2009-3988 Mozilla violation of same-origin policy due to properties set on objects passed to showModalDialog (MFSA 2010-04)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566052" id="566052">CVE-2010-0162 Mozilla bypass of same-origin policy due to improper SVG document processing (MFSA 2010-05)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100112006" comment="xulrunner-devel-unstable is earlier than 0:1.9.0.18-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112007" comment="xulrunner-devel-unstable is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100112002" comment="xulrunner is earlier than 0:1.9.0.18-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100112004" comment="xulrunner-devel is earlier than 0:1.9.0.18-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100112008" comment="firefox is earlier than 0:3.0.18-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112009" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112011" comment="firefox is earlier than 0:3.0.18-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100113" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0113: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0113-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0113.html" />
          <reference source="CVE" ref_id="CVE-2009-1571" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1571.html" />
          <reference source="CVE" ref_id="CVE-2010-0159" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0159.html" />
          <reference source="CVE" ref_id="CVE-2010-0169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0169.html" />
          <reference source="CVE" ref_id="CVE-2010-0171" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0171.html" />
    
    <description>SeaMonkey is an open source Web browser, email and newsgroup client, IRC
chat client, and HTML editor.

A use-after-free flaw was found in SeaMonkey. Under low memory conditions,
visiting a web page containing malicious content could result in SeaMonkey
executing arbitrary code with the privileges of the user running SeaMonkey.
(CVE-2009-1571)

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause SeaMonkey to crash or,
potentially, execute arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2010-0159)

All SeaMonkey users should upgrade to these updated packages, which correct
these issues. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-17" />
        <updated date="2010-02-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1571.html">CVE-2009-1571</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0159.html">CVE-2010-0159</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0169.html">CVE-2010-0169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0171.html">CVE-2010-0171</cve>
                <bugzilla href="http://bugzilla.redhat.com/566047" id="566047">CVE-2010-0159 Mozilla crashes with evidence of memory corruption (MFSA 2010-01)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566050" id="566050">CVE-2009-1571 Mozilla incorrectly frees used memory (MFSA 2010-03)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113012" comment="seamonkey-nspr is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113013" comment="seamonkey-nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113018" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113019" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113014" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113020" comment="seamonkey-mail is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113002" comment="seamonkey is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113006" comment="seamonkey-devel is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113016" comment="seamonkey-chat is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113010" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113011" comment="seamonkey-nss-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113004" comment="seamonkey-nss is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113005" comment="seamonkey-nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113008" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.50.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113027" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-52.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113026" comment="seamonkey-mail is earlier than 0:1.0.9-52.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113023" comment="seamonkey is earlier than 0:1.0.9-52.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113024" comment="seamonkey-devel is earlier than 0:1.0.9-52.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113028" comment="seamonkey-chat is earlier than 0:1.0.9-52.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100113025" comment="seamonkey-js-debugger is earlier than 0:1.0.9-52.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100114" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0114: acroread security and bug fix update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0114-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0114.html" />
          <reference source="CVE" ref_id="CVE-2010-0186" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0186.html" />
          <reference source="CVE" ref_id="CVE-2010-0188" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0188.html" />
    
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes two vulnerabilities in Adobe Reader. These
vulnerabilities are summarized on the Adobe Security Advisory APSB10-07
page listed in the References section. A specially-crafted PDF file could
cause Adobe Reader to crash or, potentially, execute arbitrary code as the
user running Adobe Reader when opened. (CVE-2010-0186, CVE-2010-0188)

This update also fixes a bug where, on some systems, attempting to install
or upgrade the acroread packages failed due to a package dependency issue.
(BZ#557506)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 9.3.1, which is not vulnerable to these issues and
fixes this bug. All running instances of Adobe Reader must be restarted for
the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-18" />
        <updated date="2010-02-18" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0186.html">CVE-2010-0186</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0188.html">CVE-2010-0188</cve>
                <bugzilla href="http://bugzilla.redhat.com/557506" id="557506">acroread requires openldap-devel which is in Workstation/</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/563819" id="563819">CVE-2010-0186 flash-plugin: unauthorized cross-domain requests (APSB10-06)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566087" id="566087">CVE-2010-0188 acroread: unspecified code execution flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100114004" comment="acroread-plugin is earlier than 0:9.3.1-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100114002" comment="acroread is earlier than 0:9.3.1-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100115" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0115: pidgin security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0115-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0115.html" />
          <reference source="CVE" ref_id="CVE-2010-0277" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0277.html" />
          <reference source="CVE" ref_id="CVE-2010-0420" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0420.html" />
          <reference source="CVE" ref_id="CVE-2010-0423" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0423.html" />
    
    <description>Pidgin is an instant messaging program which can log in to multiple
accounts on multiple instant messaging networks simultaneously.

An input sanitization flaw was found in the way Pidgin's MSN protocol
implementation handled MSNSLP invitations. A remote attacker could send a
specially-crafted INVITE request that would cause a denial of service
(memory corruption and Pidgin crash). (CVE-2010-0277)

A denial of service flaw was found in Finch's XMPP chat implementation,
when using multi-user chat. If a Finch user in a multi-user chat session
were to change their nickname to contain the HTML "br" element, it would
cause Finch to crash. (CVE-2010-0420)

Red Hat would like to thank Sadrul Habib Chowdhury of the Pidgin project
for responsibly reporting the CVE-2010-0420 issue.

A denial of service flaw was found in the way Pidgin processed emoticon
images. A remote attacker could flood the victim with emoticon images
during mutual communication, leading to excessive CPU use. (CVE-2010-0423)

These packages upgrade Pidgin to version 2.6.6. Refer to the Pidgin release
notes for a full list of changes: http://developer.pidgin.im/wiki/ChangeLog

All Pidgin users are advised to upgrade to these updated packages, which
correct these issues. Pidgin must be restarted for this update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-18" />
        <updated date="2010-02-18" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0277.html">CVE-2010-0277</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0420.html">CVE-2010-0420</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0423.html">CVE-2010-0423</cve>
                <bugzilla href="http://bugzilla.redhat.com/554335" id="554335">CVE-2010-0277 pidgin MSN protocol plugin memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/565786" id="565786">CVE-2010-0420 pidgin: Finch XMPP MUC Crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/565792" id="565792">CVE-2010-0423 pidgin: Smiley Denial of Service</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115010" comment="libpurple-perl is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044005" comment="libpurple-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115008" comment="finch is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044009" comment="finch is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115004" comment="libpurple is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044015" comment="libpurple is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115002" comment="pidgin is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044003" comment="pidgin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115018" comment="libpurple-devel is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044019" comment="libpurple-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115014" comment="finch-devel is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044011" comment="finch-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115012" comment="pidgin-perl is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044007" comment="pidgin-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115006" comment="pidgin-devel is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044017" comment="pidgin-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115016" comment="libpurple-tcl is earlier than 0:2.6.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044013" comment="libpurple-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115029" comment="libpurple-perl is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044038" comment="libpurple-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115027" comment="libpurple is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044032" comment="libpurple is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115023" comment="finch is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044036" comment="finch is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115021" comment="pidgin is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044022" comment="pidgin is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115037" comment="libpurple-devel is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044024" comment="libpurple-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115033" comment="pidgin-devel is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044030" comment="pidgin-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115031" comment="finch-devel is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044028" comment="finch-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115025" comment="pidgin-perl is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044026" comment="pidgin-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100115035" comment="libpurple-tcl is earlier than 0:2.6.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044034" comment="libpurple-tcl is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100122" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0122: sudo security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0122-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0122.html" />
          <reference source="CVE" ref_id="CVE-2010-0426" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0426.html" />
          <reference source="CVE" ref_id="CVE-2010-0427" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0427.html" />
    
    <description>The sudo (superuser do) utility allows system administrators to give
certain users the ability to run commands as root.

A privilege escalation flaw was found in the way sudo handled the sudoedit
pseudo-command. If a local user were authorized by the sudoers file to use
this pseudo-command, they could possibly leverage this flaw to execute
arbitrary code with the privileges of the root user. (CVE-2010-0426)

The sudo utility did not properly initialize supplementary groups when the
"runas_default" option (in the sudoers file) was used. If a local user
were authorized by the sudoers file to perform their sudo commands under
the account specified with "runas_default", they would receive the root
user's supplementary groups instead of those of the intended target user,
giving them unintended privileges. (CVE-2010-0427)

Users of sudo should upgrade to this updated package, which contains
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-02-26" />
        <updated date="2010-02-26" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0426.html">CVE-2010-0426</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0427.html">CVE-2010-0427</cve>
                <bugzilla href="http://bugzilla.redhat.com/567337" id="567337">CVE-2010-0426 sudo: sudoedit option can possibly allow for arbitrary code execution</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/567622" id="567622">CVE-2010-0427 sudo: Fails to reset group permissions if runas_default set</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100122002" comment="sudo is earlier than 0:1.6.9p17-6.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100122003" comment="sudo is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100124" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0124: systemtap security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0124-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0124.html" />
          <reference source="CVE" ref_id="CVE-2009-4273" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4273.html" />
          <reference source="CVE" ref_id="CVE-2010-0411" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0411.html" />
    
    <description>SystemTap is an instrumentation system for systems running the Linux
kernel, version 2.6. Developers can write scripts to collect data on the
operation of the system.

A flaw was found in the SystemTap compile server, stap-server, an optional
component of SystemTap. This server did not adequately sanitize input
provided by the stap-client program, which may allow a remote user to
execute arbitrary shell code with the privileges of the compile server
process, which could possibly be running as the root user. (CVE-2009-4273)

Note: stap-server is not run by default. It must be started by a user or
administrator.

A buffer overflow flaw was found in SystemTap's tapset __get_argv()
function. If a privileged user ran a SystemTap script that called this
function, a local, unprivileged user could, while that script is still
running, trigger this flaw and cause memory corruption by running a command
with a large argument list, which may lead to a system crash or,
potentially, arbitrary code execution with root privileges. (CVE-2010-0411)

Note: SystemTap scripts that call __get_argv(), being a privileged
function, can only be executed by the root user or users in the stapdev
group. As well, if such a script was compiled and installed by root, users
in the stapusr group would also be able to execute it.

SystemTap users should upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-01" />
        <updated date="2010-03-01" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4273.html">CVE-2009-4273</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0411.html">CVE-2010-0411</cve>
                <bugzilla href="http://bugzilla.redhat.com/550172" id="550172">CVE-2009-4273 systemtap: remote code execution via stap-server</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559719" id="559719">CVE-2010-0411 systemtap: Crash with systemtap script using __get_argv()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100124006" comment="systemtap-runtime is earlier than 0:0.9.7-5.el5_4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124007" comment="systemtap-runtime is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100124004" comment="systemtap-testsuite is earlier than 0:0.9.7-5.el5_4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124005" comment="systemtap-testsuite is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100124002" comment="systemtap is earlier than 0:0.9.7-5.el5_4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124003" comment="systemtap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100124014" comment="systemtap-sdt-devel is earlier than 0:0.9.7-5.el5_4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124015" comment="systemtap-sdt-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100124008" comment="systemtap-client is earlier than 0:0.9.7-5.el5_4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124009" comment="systemtap-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100124010" comment="systemtap-initscript is earlier than 0:0.9.7-5.el5_4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124011" comment="systemtap-initscript is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100124012" comment="systemtap-server is earlier than 0:0.9.7-5.el5_4.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124013" comment="systemtap-server is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100125" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0125: systemtap security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0125-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0125.html" />
          <reference source="CVE" ref_id="CVE-2010-0411" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0411.html" />
    
    <description>SystemTap is an instrumentation system for systems running the Linux
kernel, version 2.6. Developers can write scripts to collect data on the
operation of the system.

A buffer overflow flaw was found in SystemTap's tapset __get_argv()
function. If a privileged user ran a SystemTap script that called this
function, a local, unprivileged user could, while that script is still
running, trigger this flaw and cause memory corruption by running a command
with a large argument list, which may lead to a system crash or,
potentially, arbitrary code execution with root privileges. (CVE-2010-0411)

Note: SystemTap scripts that call __get_argv(), being a privileged
function, can only be executed by the root user or users in the stapdev
group. As well, if such a script was compiled and installed by root, users
in the stapusr group would also be able to execute it.

SystemTap users should upgrade to these updated packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-01" />
        <updated date="2010-03-01" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0411.html">CVE-2010-0411</cve>
                <bugzilla href="http://bugzilla.redhat.com/559719" id="559719">CVE-2010-0411 systemtap: Crash with systemtap script using __get_argv()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100125006" comment="systemtap-runtime is earlier than 0:0.6.2-2.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100125007" comment="systemtap-runtime is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100125004" comment="systemtap-testsuite is earlier than 0:0.6.2-2.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100125005" comment="systemtap-testsuite is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100125002" comment="systemtap is earlier than 0:0.6.2-2.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100125003" comment="systemtap is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100126" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0126: kvm security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0126-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0126.html" />
          <reference source="CVE" ref_id="CVE-2009-3722" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3722.html" />
          <reference source="CVE" ref_id="CVE-2010-0419" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0419.html" />
    
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. KVM is a Linux kernel module built for
the standard Red Hat Enterprise Linux kernel.

A flaw was found in the way the x86 emulator loaded segment selectors (used
for memory segmentation and protection) into segment registers. In some
guest system configurations, an unprivileged guest user could leverage this
flaw to crash the guest or possibly escalate their privileges within the
guest. (CVE-2010-0419)

The x86 emulator implementation was missing a check for the Current
Privilege Level (CPL) while accessing debug registers. An unprivileged
user in a guest could leverage this flaw to crash the guest.
(CVE-2009-3722)

This update also fixes the following bugs:

With Red Hat Enterprise Virtualization, the virtio_blk_dma_restart_bh()
function was previously used to handle write errors; however, a bug fix
provided by the RHSA-2009:1659 update meant that read errors would also
have to be handled by this function. The function was not updated for this,
causing read errors to be resubmitted as writes. This caused guest image
corruption in some cases.

Additionally, the return values of the bdrv_aio_write() and bdrv_aio_read()
functions were ignored. If an immediate failure occurred in one of these
functions, errors would be missed and the guest could hang or read
corrupted data. (BZ#562776)

All KVM users should upgrade to these updated packages, which contain
backported patches to resolve these issues. Note: The procedure in the
Solution section must be performed before this update will take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-01" />
        <updated date="2010-03-01" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3722.html">CVE-2009-3722</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0419.html">CVE-2010-0419</cve>
                <bugzilla href="http://bugzilla.redhat.com/531660" id="531660">CVE-2009-3722 KVM: Check cpl before emulating debug register access</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/562776" id="562776">Guest image corruption after RHEV-H update to 5.4-2.1.3.el5_4rhev2_1 using virtio-blk</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/563463" id="563463">CVE-2010-0419 kvm: emulator privilege escalation segment selector check</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100126004" comment="kvm-qemu-img is earlier than 0:83-105.el5_4.27" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088009" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100126002" comment="kvm is earlier than 0:83-105.el5_4.27" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088003" comment="kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100126006" comment="kmod-kvm is earlier than 0:83-105.el5_4.27" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088007" comment="kmod-kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100126008" comment="kvm-tools is earlier than 0:83-105.el5_4.27" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088005" comment="kvm-tools is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100129" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0129: cups security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0129-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0129.html" />
          <reference source="CVE" ref_id="CVE-2010-0302" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0302.html" />
    
    <description>The Common UNIX Printing System (CUPS) provides a portable printing layer
for UNIX operating systems.

It was discovered that the Red Hat Security Advisory RHSA-2009:1595 did not
fully correct the use-after-free flaw in the way CUPS handled references in
its file descriptors-handling interface. A remote attacker could send
specially-crafted queries to the CUPS server, causing it to crash.
(CVE-2010-0302)

Users of cups are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. After installing the
update, the cupsd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-03" />
        <updated date="2010-03-03" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0302.html">CVE-2010-0302</cve>
                <bugzilla href="http://bugzilla.redhat.com/557775" id="557775">CVE-2010-0302 cups Incomplete fix for CVE-2009-3553</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100129004" comment="cups-lpd is earlier than 1:1.3.7-11.el5_4.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129005" comment="cups-lpd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100129006" comment="cups-devel is earlier than 1:1.3.7-11.el5_4.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129007" comment="cups-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100129008" comment="cups-libs is earlier than 1:1.3.7-11.el5_4.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129009" comment="cups-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100129002" comment="cups is earlier than 1:1.3.7-11.el5_4.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129003" comment="cups is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100130" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0130: java-1.5.0-ibm security update (Moderate)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0130-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0130.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-0084" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0084.html" />
          <reference source="CVE" ref_id="CVE-2010-0085" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0085.html" />
          <reference source="CVE" ref_id="CVE-2010-0087" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0087.html" />
          <reference source="CVE" ref_id="CVE-2010-0088" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0088.html" />
          <reference source="CVE" ref_id="CVE-2010-0089" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0089.html" />
          <reference source="CVE" ref_id="CVE-2010-0091" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0091.html" />
          <reference source="CVE" ref_id="CVE-2010-0092" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0092.html" />
          <reference source="CVE" ref_id="CVE-2010-0094" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0094.html" />
          <reference source="CVE" ref_id="CVE-2010-0095" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0095.html" />
          <reference source="CVE" ref_id="CVE-2010-0837" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0837.html" />
          <reference source="CVE" ref_id="CVE-2010-0838" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0838.html" />
          <reference source="CVE" ref_id="CVE-2010-0839" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0839.html" />
    
    <description>The IBM 1.5.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handle session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. (CVE-2009-3555)

This update disables renegotiation in the Java Secure Socket Extension
(JSSE) component. Unsafe renegotiation can be re-enabled using the
com.ibm.jsse2.renegotiate property. Refer to the following Knowledgebase
article for details: http://kbase.redhat.com/faq/docs/DOC-20491

All users of java-1.5.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.5.0 SR11-FP1 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-03" />
        <updated date="2010-03-03" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0084.html">CVE-2010-0084</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0085.html">CVE-2010-0085</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0087.html">CVE-2010-0087</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0088.html">CVE-2010-0088</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0089.html">CVE-2010-0089</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0091.html">CVE-2010-0091</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0092.html">CVE-2010-0092</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0094.html">CVE-2010-0094</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0095.html">CVE-2010-0095</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0837.html">CVE-2010-0837</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0838.html">CVE-2010-0838</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0839.html">CVE-2010-0839</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100130006" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.11.1-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130007" comment="java-1.5.0-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100130002" comment="java-1.5.0-ibm is earlier than 1:1.5.0.11.1-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130003" comment="java-1.5.0-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100130004" comment="java-1.5.0-ibm-accessibility is earlier than 1:1.5.0.11.1-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130005" comment="java-1.5.0-ibm-accessibility is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100130008" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.11.1-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130009" comment="java-1.5.0-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100130016" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.11.1-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130017" comment="java-1.5.0-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100130010" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.11.1-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130011" comment="java-1.5.0-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100130012" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.11.1-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130013" comment="java-1.5.0-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100130014" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.11.1-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130015" comment="java-1.5.0-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100140" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0140: pango security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0140-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0140.html" />
          <reference source="CVE" ref_id="CVE-2010-0421" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0421.html" />
    
    <description>Pango is a library used for the layout and rendering of internationalized
text.

An input sanitization flaw, leading to an array index error, was found in
the way the Pango font rendering library synthesized the Glyph Definition
(GDEF) table from a font's character map and the Unicode property database.
If an attacker created a specially-crafted font file and tricked a local,
unsuspecting user into loading the font file in an application that uses
the Pango font rendering library, it could cause that application to crash.
(CVE-2010-0421)

Users of pango and evolution28-pango are advised to upgrade to these
updated packages, which contain a backported patch to resolve this issue.
After installing this update, you must restart your system or restart your
X session for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-15" />
        <updated date="2010-03-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0421.html">CVE-2010-0421</cve>
                <bugzilla href="http://bugzilla.redhat.com/555831" id="555831">CVE-2010-0421 libpangoft2 segfaults on forged font files</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100140004" comment="pango-devel is earlier than 0:1.14.9-8.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100140005" comment="pango-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100140002" comment="pango is earlier than 0:1.14.9-8.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100140003" comment="pango is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100140009" comment="pango-devel is earlier than 0:1.2.5-10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100140010" comment="pango-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100140007" comment="pango is earlier than 0:1.2.5-10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100140008" comment="pango is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100140014" comment="evolution28-pango-devel is earlier than 0:1.14.9-13.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100140015" comment="evolution28-pango-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100140012" comment="evolution28-pango is earlier than 0:1.14.9-13.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100140013" comment="evolution28-pango is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100140017" comment="pango-devel is earlier than 0:1.6.0-16.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100140010" comment="pango-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100140016" comment="pango is earlier than 0:1.6.0-16.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100140008" comment="pango is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100141" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0141: tar security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0141-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0141.html" />
          <reference source="CVE" ref_id="CVE-2007-4476" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-4476.html" />
          <reference source="CVE" ref_id="CVE-2010-0624" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0624.html" />
    
    <description>The GNU tar program saves many files together in one archive and can
restore individual files (or all of the files) from that archive.

A heap-based buffer overflow flaw was found in the way tar expanded archive
files. If a user were tricked into expanding a specially-crafted archive,
it could cause the tar executable to crash or execute arbitrary code with
the privileges of the user running tar. (CVE-2010-0624)

Red Hat would like to thank Jakob Lell for responsibly reporting the
CVE-2010-0624 issue.

A denial of service flaw was found in the way tar expanded archive files.
If a user expanded a specially-crafted archive, it could cause the tar
executable to crash. (CVE-2007-4476)

Users of tar are advised to upgrade to this updated package, which contains
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-15" />
        <updated date="2010-03-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-4476.html">CVE-2007-4476</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0624.html">CVE-2010-0624</cve>
                <bugzilla href="http://bugzilla.redhat.com/280961" id="280961">CVE-2007-4476 tar/cpio stack crashing in safer_name_suffix</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564368" id="564368">CVE-2010-0624 tar, cpio: Heap-based buffer overflow by expanding a specially-crafted archive</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100141002" comment="tar is earlier than 2:1.15.1-23.0.1.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100141003" comment="tar is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100141005" comment="tar is earlier than 0:1.14-13.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100141006" comment="tar is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100142" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0142: tar security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0142-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0142.html" />
          <reference source="CVE" ref_id="CVE-2010-0624" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0624.html" />
    
    <description>The GNU tar program saves many files together in one archive and can
restore individual files (or all of the files) from that archive.

A heap-based buffer overflow flaw was found in the way tar expanded archive
files. If a user were tricked into expanding a specially-crafted archive,
it could cause the tar executable to crash or execute arbitrary code with
the privileges of the user running tar. (CVE-2010-0624)

Red Hat would like to thank Jakob Lell for responsibly reporting this
issue.

Users of tar are advised to upgrade to this updated package, which contains
a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-15" />
        <updated date="2010-03-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0624.html">CVE-2010-0624</cve>
                <bugzilla href="http://bugzilla.redhat.com/564368" id="564368">CVE-2010-0624 tar, cpio: Heap-based buffer overflow by expanding a specially-crafted archive</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100142002" comment="tar is earlier than 0:1.13.25-16.RHEL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100141006" comment="tar is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100143" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0143: cpio security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0143-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0143.html" />
          <reference source="CVE" ref_id="CVE-2010-0624" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0624.html" />
    
    <description>GNU cpio copies files into or out of a cpio or tar archive.

A heap-based buffer overflow flaw was found in the way cpio expanded
archive files. If a user were tricked into expanding a specially-crafted
archive, it could cause the cpio executable to crash or execute arbitrary
code with the privileges of the user running cpio. (CVE-2010-0624)

Red Hat would like to thank Jakob Lell for responsibly reporting this
issue.

Users of cpio are advised to upgrade to this updated package, which
contains a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-15" />
        <updated date="2010-03-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0624.html">CVE-2010-0624</cve>
                <bugzilla href="http://bugzilla.redhat.com/564368" id="564368">CVE-2010-0624 tar, cpio: Heap-based buffer overflow by expanding a specially-crafted archive</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100143002" comment="cpio is earlier than 0:2.5-16.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100143003" comment="cpio is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100144" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0144: cpio security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0144-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0144.html" />
          <reference source="CVE" ref_id="CVE-2007-4476" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-4476.html" />
          <reference source="CVE" ref_id="CVE-2010-0624" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0624.html" />
    
    <description>GNU cpio copies files into or out of a cpio or tar archive.

A heap-based buffer overflow flaw was found in the way cpio expanded
archive files. If a user were tricked into expanding a specially-crafted
archive, it could cause the cpio executable to crash or execute arbitrary
code with the privileges of the user running cpio. (CVE-2010-0624)

Red Hat would like to thank Jakob Lell for responsibly reporting the
CVE-2010-0624 issue.

A denial of service flaw was found in the way cpio expanded archive files.
If a user expanded a specially-crafted archive, it could cause the cpio
executable to crash. (CVE-2007-4476)

Users of cpio are advised to upgrade to this updated package, which
contains backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-15" />
        <updated date="2010-03-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-4476.html">CVE-2007-4476</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0624.html">CVE-2010-0624</cve>
                <bugzilla href="http://bugzilla.redhat.com/280961" id="280961">CVE-2007-4476 tar/cpio stack crashing in safer_name_suffix</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564368" id="564368">CVE-2010-0624 tar, cpio: Heap-based buffer overflow by expanding a specially-crafted archive</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100144002" comment="cpio is earlier than 0:2.6-23.el5_4.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100144003" comment="cpio is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100145" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0145: cpio security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0145-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0145.html" />
          <reference source="CVE" ref_id="CVE-2005-4268" ref_url="https://www.redhat.com/security/data/cve/CVE-2005-4268.html" />
          <reference source="CVE" ref_id="CVE-2010-0624" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0624.html" />
    
    <description>GNU cpio copies files into or out of a cpio or tar archive.

A heap-based buffer overflow flaw was found in the way cpio expanded
archive files. If a user were tricked into expanding a specially-crafted
archive, it could cause the cpio executable to crash or execute arbitrary
code with the privileges of the user running cpio. (CVE-2010-0624)

Red Hat would like to thank Jakob Lell for responsibly reporting the
CVE-2010-0624 issue.

A stack-based buffer overflow flaw was found in the way cpio expanded large
archive files. If a user expanded a specially-crafted archive, it could
cause the cpio executable to crash. This issue only affected 64-bit
platforms. (CVE-2005-4268)

Users of cpio are advised to upgrade to this updated package, which
contains backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-15" />
        <updated date="2010-03-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2005-4268.html">CVE-2005-4268</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0624.html">CVE-2010-0624</cve>
                <bugzilla href="http://bugzilla.redhat.com/229191" id="229191">CVE-2005-4268 cpio large filesize buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564368" id="564368">CVE-2010-0624 tar, cpio: Heap-based buffer overflow by expanding a specially-crafted archive</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100145002" comment="cpio is earlier than 0:2.5-6.RHEL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100143003" comment="cpio is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100146" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0146: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0146-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0146.html" />
          <reference source="CVE" ref_id="CVE-2009-4271" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4271.html" />
          <reference source="CVE" ref_id="CVE-2010-0003" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0003.html" />
          <reference source="CVE" ref_id="CVE-2010-0007" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0007.html" />
          <reference source="CVE" ref_id="CVE-2010-0008" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0008.html" />
          <reference source="CVE" ref_id="CVE-2010-0307" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0307.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* a NULL pointer dereference flaw was found in the sctp_rcv_ootb() function
in the Linux kernel Stream Control Transmission Protocol (SCTP)
implementation. A remote attacker could send a specially-crafted SCTP
packet to a target system, resulting in a denial of service.
(CVE-2010-0008, Important)

* a NULL pointer dereference flaw was found in the Linux kernel. During a
core dump, the kernel did not check if the Virtual Dynamically-linked
Shared Object page was accessible. On Intel 64 and AMD64 systems, a local,
unprivileged user could use this flaw to cause a kernel panic by running a
crafted 32-bit application. (CVE-2009-4271, Important)

* an information leak was found in the print_fatal_signal() implementation
in the Linux kernel. When "/proc/sys/kernel/print-fatal-signals" is set to
1 (the default value is 0), memory that is reachable by the kernel could be
leaked to user-space. This issue could also result in a system crash. Note
that this flaw only affected the i386 architecture. (CVE-2010-0003,
Moderate)

* on AMD64 systems, it was discovered that the kernel did not ensure the
ELF interpreter was available before making a call to the SET_PERSONALITY
macro. A local attacker could use this flaw to cause a denial of service by
running a 32-bit application that attempts to execute a 64-bit application.
(CVE-2010-0307, Moderate)

* missing capability checks were found in the ebtables implementation, used
for creating an Ethernet bridge firewall. This could allow a local,
unprivileged user to bypass intended capability restrictions and modify
ebtables rules. (CVE-2010-0007, Low)

This update also fixes the following bugs:

* under some circumstances, a locking bug could have caused an online ext3
file system resize to deadlock, which may have, in turn, caused the file
system or the entire system to become unresponsive. In either case, a
reboot was required after the deadlock. With this update, using resize2fs
to perform an online resize of an ext3 file system works as expected.
(BZ#553135)

* some ATA and SCSI devices were not honoring the barrier=1 mount option,
which could result in data loss after a crash or power loss. This update
applies a patch to the Linux SCSI driver to ensure ordered write caching.
This solution does not provide cache flushes; however, it does provide
data integrity on devices that have no write caching (or where write
caching is disabled) and no command queuing. For systems that have command
queuing or write cache enabled there is no guarantee of data integrity
after a crash. (BZ#560563)

* it was found that lpfc_find_target() could loop continuously when
scanning a list of nodes due to a missing spinlock. This missing spinlock
allowed the list to be changed after the list_empty() test, resulting in a
NULL value, causing the loop. This update adds the spinlock, resolving the
issue. (BZ#561453)

* the fix for CVE-2009-4538 provided by RHSA-2010:0020 introduced a
regression, preventing Wake on LAN (WoL) working for network devices using
the Intel PRO/1000 Linux driver, e1000e. Attempting to configure WoL for
such devices resulted in the following error, even when configuring valid
options:

"Cannot set new wake-on-lan settings: Operation not supported
not setting wol"

This update resolves this regression, and WoL now works as expected for
network devices using the e1000e driver. (BZ#565496)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-16" />
        <updated date="2010-03-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4271.html">CVE-2009-4271</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0003.html">CVE-2010-0003</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0007.html">CVE-2010-0007</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0008.html">CVE-2010-0008</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0307.html">CVE-2010-0307</cve>
                <bugzilla href="http://bugzilla.redhat.com/548876" id="548876">CVE-2009-4271 kernel: 32bit process on 64bit system can trigger a kernel panic</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/553135" id="553135">ext2online resize hangs [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/554578" id="554578">CVE-2010-0003 kernel: infoleak if print-fatal-signals=1</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555238" id="555238">CVE-2010-0007 kernel: netfilter: ebtables: enforce CAP_NET_ADMIN</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555658" id="555658">CVE-2010-0008 kernel: sctp remote denial of service</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/560547" id="560547">CVE-2010-0307 kernel: DoS on x86_64</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/560563" id="560563">Write barrier operations not working for libata and general SCSI disks [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561453" id="561453">[Emulex 4.9 bug] lpfc driver doesn't acquire lock when searching hba for target [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/565496" id="565496">e1000e: wol is broken in kernel 2.6.9-89.19 [rhel-4.8.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146002" comment="kernel is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146022" comment="kernel-doc is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146004" comment="kernel-devel is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146010" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146020" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146012" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146008" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146016" comment="kernel-xenU is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146006" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146018" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100146014" comment="kernel-smp is earlier than 0:2.6.9-89.0.23.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100147" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0147: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0147-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0147.html" />
          <reference source="CVE" ref_id="CVE-2009-4308" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4308.html" />
          <reference source="CVE" ref_id="CVE-2010-0003" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0003.html" />
          <reference source="CVE" ref_id="CVE-2010-0007" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0007.html" />
          <reference source="CVE" ref_id="CVE-2010-0008" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0008.html" />
          <reference source="CVE" ref_id="CVE-2010-0415" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0415.html" />
          <reference source="CVE" ref_id="CVE-2010-0437" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0437.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security fixes:

* a NULL pointer dereference flaw was found in the sctp_rcv_ootb() function
in the Linux kernel Stream Control Transmission Protocol (SCTP)
implementation. A remote attacker could send a specially-crafted SCTP
packet to a target system, resulting in a denial of service.
(CVE-2010-0008, Important)

* a missing boundary check was found in the do_move_pages() function in the
memory migration functionality in the Linux kernel. A local user could use
this flaw to cause a local denial of service or an information leak.
(CVE-2010-0415, Important)

* a NULL pointer dereference flaw was found in the ip6_dst_lookup_tail()
function in the Linux kernel. An attacker on the local network could
trigger this flaw by sending IPv6 traffic to a target system, leading to a
system crash (kernel OOPS) if dst->neighbour is NULL on the target system
when receiving an IPv6 packet. (CVE-2010-0437, Important)

* a NULL pointer dereference flaw was found in the ext4 file system code in
the Linux kernel. A local attacker could use this flaw to trigger a local
denial of service by mounting a specially-crafted, journal-less ext4 file
system, if that file system forced an EROFS error. (CVE-2009-4308,
Moderate)

* an information leak was found in the print_fatal_signal() implementation
in the Linux kernel. When "/proc/sys/kernel/print-fatal-signals" is set to
1 (the default value is 0), memory that is reachable by the kernel could be
leaked to user-space. This issue could also result in a system crash. Note
that this flaw only affected the i386 architecture. (CVE-2010-0003,
Moderate)

* missing capability checks were found in the ebtables implementation, used
for creating an Ethernet bridge firewall. This could allow a local,
unprivileged user to bypass intended capability restrictions and modify
ebtables rules. (CVE-2010-0007, Low)

Bug fixes:

* a bug prevented Wake on LAN (WoL) being enabled on certain Intel
hardware. (BZ#543449)

* a race issue in the Journaling Block Device. (BZ#553132)

* 32-bit x86 timespec structures are not the same size as on 64-bit
systems. A 32-bit compatible function -- sys32_sched_rr_get_interval() --
is available. However, when 32-bit programs running on 64-bit systems
called sched_rr_get_interval(), it was not called and the kernel wrote data
past the allocated space, causing user stack corruption.
sys32_sched_rr_get_interval() is now called as expected. (BZ#557684)

* the RHSA-2010:0019 update introduced a regression, preventing WoL from
working for network devices using the e1000e driver. (BZ#559335)

* adding a bonding interface in mode balance-alb to a bridge was not
functional. (BZ#560588)

* some KVM (Kernel-based Virtual Machine) guests experienced slow
performance (and possibly a crash) after suspend/resume. (BZ#560640)

* on some systems, VF cannot be enabled in dom0. (BZ#560665)

* on systems with certain network cards, a system crash occurred after
enabling GRO. (BZ#561417)

* for x86 KVM guests with pvclock enabled, the boot clocks were registered
twice, possibly causing KVM to write data to a random memory area during
the guest's life. (BZ#561454)

* serious performance degradation for 32-bit applications, that map (mmap)
thousands of small files, when run on a 64-bit system. (BZ#562746)

* improved kexec/kdump handling. Previously, on some systems under heavy
load, kexec/kdump was not functional. (BZ#562772)

* dom0 was unable to boot when using the Xen hypervisor on a system with a
large number of logical CPUs. (BZ#562777)

* a fix for a bug that could potentially cause file system corruption.
(BZ#564281)

* a bug caused infrequent cluster issues for users of GFS2. (BZ#564288)

* gfs2_delete_inode failed on read-only file systems. (BZ#564290)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-16" />
        <updated date="2010-03-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4308.html">CVE-2009-4308</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0003.html">CVE-2010-0003</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0007.html">CVE-2010-0007</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0008.html">CVE-2010-0008</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0415.html">CVE-2010-0415</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0437.html">CVE-2010-0437</cve>
                <bugzilla href="http://bugzilla.redhat.com/547255" id="547255">CVE-2009-4308 kernel: ext4: Avoid null pointer dereference when decoding EROFS w/o a journal</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/553132" id="553132">[Patch] jbd slab cache creation/deletion is racey [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/554578" id="554578">CVE-2010-0003 kernel: infoleak if print-fatal-signals=1</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555238" id="555238">CVE-2010-0007 kernel: netfilter: ebtables: enforce CAP_NET_ADMIN</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555658" id="555658">CVE-2010-0008 kernel: sctp remote denial of service</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557684" id="557684">[5.4] sched_rr_get_interval() destroys user data in 32-bit compat mode. [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559335" id="559335">e1000e: wol is broken on 2.6.18-185.el5 [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/560588" id="560588">Adding bonding in balance-alb mode to bridge causes host network connectivity to be lost [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/560640" id="560640">Call trace error display when resume from suspend to disk (ide block) - pvclock related [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/560665" id="560665">[SR-IOV] VF can not be enabled in Dom0 [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561417" id="561417">Kernel panic when using GRO through ixgbe driver and xen bridge [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561454" id="561454">kvm pvclock on i386 suffers from double registering [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/562582" id="562582">CVE-2010-0415 kernel: sys_move_pages infoleak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/562746" id="562746">Strange vm performance degradation moving 32 bit app from RHEL 4.6 32bit to 5.4 64bit [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/562772" id="562772">5.5 - cciss backport some upstream bits to improve kexec/kdump [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/562777" id="562777">[RHEL5 Xen] EXPERIMENTAL EX/MC: Dom0 soft lockups on >64-way system from hard-virt patches [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/563781" id="563781">CVE-2010-0437 kernel: ipv6: fix ip6_dst_lookup_tail() NULL pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564281" id="564281">Please implement upstream fix for potential filesystem corruption bug [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564288" id="564288">GFS2 Filesystem Withdrawal: fatal: invalid metadata block [rhel-5.4.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564290" id="564290">1916556 - GFS2 gfs2_delete_inode failing on RO filesystem [rhel-5.4.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147004" comment="kernel-headers is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147002" comment="kernel is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147024" comment="kernel-doc is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147022" comment="kernel-PAE-devel is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147014" comment="kernel-devel is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147008" comment="kernel-debug is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147018" comment="kernel-kdump is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147010" comment="kernel-xen-devel is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147012" comment="kernel-debug-devel is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147020" comment="kernel-PAE is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147016" comment="kernel-kdump-devel is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100147006" comment="kernel-xen is earlier than 0:2.6.18-164.15.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100153" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0153: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0153-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0153.html" />
          <reference source="CVE" ref_id="CVE-2009-0689" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0689.html" />
          <reference source="CVE" ref_id="CVE-2009-1571" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1571.html" />
          <reference source="CVE" ref_id="CVE-2009-2462" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2462.html" />
          <reference source="CVE" ref_id="CVE-2009-2463" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2463.html" />
          <reference source="CVE" ref_id="CVE-2009-2466" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2466.html" />
          <reference source="CVE" ref_id="CVE-2009-2470" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2470.html" />
          <reference source="CVE" ref_id="CVE-2009-3072" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3072.html" />
          <reference source="CVE" ref_id="CVE-2009-3075" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3075.html" />
          <reference source="CVE" ref_id="CVE-2009-3076" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3076.html" />
          <reference source="CVE" ref_id="CVE-2009-3077" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3077.html" />
          <reference source="CVE" ref_id="CVE-2009-3274" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3274.html" />
          <reference source="CVE" ref_id="CVE-2009-3376" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3376.html" />
          <reference source="CVE" ref_id="CVE-2009-3380" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3380.html" />
          <reference source="CVE" ref_id="CVE-2009-3979" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3979.html" />
          <reference source="CVE" ref_id="CVE-2010-0159" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0159.html" />
          <reference source="CVE" ref_id="CVE-2010-0163" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0163.html" />
          <reference source="CVE" ref_id="CVE-2010-0169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0169.html" />
          <reference source="CVE" ref_id="CVE-2010-0171" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0171.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the processing of malformed HTML mail content.
An HTML mail message containing malicious content could cause Thunderbird
to crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2009-2462, CVE-2009-2463, CVE-2009-2466,
CVE-2009-3072, CVE-2009-3075, CVE-2009-3380, CVE-2009-3979, CVE-2010-0159)

A use-after-free flaw was found in Thunderbird. An attacker could use this
flaw to crash Thunderbird or, potentially, execute arbitrary code with the
privileges of the user running Thunderbird. (CVE-2009-3077)

A heap-based buffer overflow flaw was found in the Thunderbird string to
floating point conversion routines. An HTML mail message containing
malicious JavaScript could crash Thunderbird or, potentially, execute
arbitrary code with the privileges of the user running Thunderbird.
(CVE-2009-0689)

A use-after-free flaw was found in Thunderbird. Under low memory
conditions, viewing an HTML mail message containing malicious content could
result in Thunderbird executing arbitrary code with the privileges of the
user running Thunderbird. (CVE-2009-1571)

A flaw was found in the way Thunderbird created temporary file names for
downloaded files. If a local attacker knows the name of a file Thunderbird
is going to download, they can replace the contents of that file with
arbitrary contents. (CVE-2009-3274)

A flaw was found in the way Thunderbird displayed a right-to-left override
character when downloading a file. In these cases, the name displayed in
the title bar differed from the name displayed in the dialog body. An
attacker could use this flaw to trick a user into downloading a file that
has a file name or extension that is different from what the user expected.
(CVE-2009-3376)

A flaw was found in the way Thunderbird processed SOCKS5 proxy replies. A
malicious SOCKS5 server could send a specially-crafted reply that would
cause Thunderbird to crash. (CVE-2009-2470)

Descriptions in the dialogs when adding and removing PKCS #11 modules were
not informative. An attacker able to trick a user into installing a
malicious PKCS #11 module could use this flaw to install their own
Certificate Authority certificates on a user's machine, making it possible
to trick the user into believing they are viewing trusted content or,
potentially, execute arbitrary code with the privileges of the user running
Thunderbird. (CVE-2009-3076)

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-17" />
        <updated date="2010-03-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0689.html">CVE-2009-0689</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1571.html">CVE-2009-1571</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2462.html">CVE-2009-2462</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2463.html">CVE-2009-2463</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2466.html">CVE-2009-2466</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2470.html">CVE-2009-2470</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3072.html">CVE-2009-3072</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3075.html">CVE-2009-3075</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3076.html">CVE-2009-3076</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3077.html">CVE-2009-3077</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3274.html">CVE-2009-3274</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3376.html">CVE-2009-3376</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3380.html">CVE-2009-3380</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3979.html">CVE-2009-3979</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0159.html">CVE-2010-0159</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0163.html">CVE-2010-0163</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0169.html">CVE-2010-0169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0171.html">CVE-2010-0171</cve>
                <bugzilla href="http://bugzilla.redhat.com/512128" id="512128">CVE-2009-2462 Mozilla Browser engine crashes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512131" id="512131">CVE-2009-2463 Mozilla Base64 decoding crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512136" id="512136">CVE-2009-2466 Mozilla JavaScript engine crashes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512145" id="512145">CVE-2009-2470 Mozilla data corruption with SOCKS5 reply</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521688" id="521688">CVE-2009-3072 Firefox 3.5.3 3.0.14 browser engine crashes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521691" id="521691">CVE-2009-3075 Firefox 3.5.2 3.0.14 JavaScript engine crashes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521692" id="521692">CVE-2009-3076 Firefox 3.0.14 Insufficient warning for PKCS11 module installation and removal</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521693" id="521693">CVE-2009-3077 Firefox 3.5.3 3.0.14 TreeColumns dangling pointer vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524815" id="524815">CVE-2009-3274 Firefox: Predictable /tmp pathname use</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530162" id="530162">CVE-2009-0689 (rejected CVE-2009-1563) Firefox heap buffer overflow in string to number conversion</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530168" id="530168">CVE-2009-3376 Firefox download filename spoofing with RTL override</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530567" id="530567">CVE-2009-3380 Firefox crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546694" id="546694">CVE-2009-3979 Mozilla crash with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566047" id="566047">CVE-2010-0159 Mozilla crashes with evidence of memory corruption (MFSA 2010-01)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566050" id="566050">CVE-2009-1571 Mozilla incorrectly frees used memory (MFSA 2010-03)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100153002" comment="thunderbird is earlier than 0:2.0.0.24-2.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100153003" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100154" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0154: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0154-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0154.html" />
          <reference source="CVE" ref_id="CVE-2009-0689" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0689.html" />
          <reference source="CVE" ref_id="CVE-2009-1571" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1571.html" />
          <reference source="CVE" ref_id="CVE-2009-2462" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2462.html" />
          <reference source="CVE" ref_id="CVE-2009-2463" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2463.html" />
          <reference source="CVE" ref_id="CVE-2009-2466" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2466.html" />
          <reference source="CVE" ref_id="CVE-2009-2470" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2470.html" />
          <reference source="CVE" ref_id="CVE-2009-3072" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3072.html" />
          <reference source="CVE" ref_id="CVE-2009-3075" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3075.html" />
          <reference source="CVE" ref_id="CVE-2009-3076" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3076.html" />
          <reference source="CVE" ref_id="CVE-2009-3077" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3077.html" />
          <reference source="CVE" ref_id="CVE-2009-3274" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3274.html" />
          <reference source="CVE" ref_id="CVE-2009-3376" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3376.html" />
          <reference source="CVE" ref_id="CVE-2009-3380" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3380.html" />
          <reference source="CVE" ref_id="CVE-2009-3979" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3979.html" />
          <reference source="CVE" ref_id="CVE-2010-0159" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0159.html" />
          <reference source="CVE" ref_id="CVE-2010-0163" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0163.html" />
          <reference source="CVE" ref_id="CVE-2010-0169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0169.html" />
          <reference source="CVE" ref_id="CVE-2010-0171" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0171.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the processing of malformed HTML mail content.
An HTML mail message containing malicious content could cause Thunderbird
to crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2009-2462, CVE-2009-2463, CVE-2009-2466,
CVE-2009-3072, CVE-2009-3075, CVE-2009-3380, CVE-2009-3979, CVE-2010-0159)

A use-after-free flaw was found in Thunderbird. An attacker could use this
flaw to crash Thunderbird or, potentially, execute arbitrary code with the
privileges of the user running Thunderbird. (CVE-2009-3077)

A heap-based buffer overflow flaw was found in the Thunderbird string to
floating point conversion routines. An HTML mail message containing
malicious JavaScript could crash Thunderbird or, potentially, execute
arbitrary code with the privileges of the user running Thunderbird.
(CVE-2009-0689)

A use-after-free flaw was found in Thunderbird. Under low memory
conditions, viewing an HTML mail message containing malicious content could
result in Thunderbird executing arbitrary code with the privileges of the
user running Thunderbird. (CVE-2009-1571)

A flaw was found in the way Thunderbird created temporary file names for
downloaded files. If a local attacker knows the name of a file Thunderbird
is going to download, they can replace the contents of that file with
arbitrary contents. (CVE-2009-3274)

A flaw was found in the way Thunderbird displayed a right-to-left override
character when downloading a file. In these cases, the name displayed in
the title bar differed from the name displayed in the dialog body. An
attacker could use this flaw to trick a user into downloading a file that
has a file name or extension that is different from what the user expected.
(CVE-2009-3376)

A flaw was found in the way Thunderbird processed SOCKS5 proxy replies. A
malicious SOCKS5 server could send a specially-crafted reply that would
cause Thunderbird to crash. (CVE-2009-2470)

Descriptions in the dialogs when adding and removing PKCS #11 modules were
not informative. An attacker able to trick a user into installing a
malicious PKCS #11 module could use this flaw to install their own
Certificate Authority certificates on a user's machine, making it possible
to trick the user into believing they are viewing trusted content or,
potentially, execute arbitrary code with the privileges of the user running
Thunderbird. (CVE-2009-3076)

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-17" />
        <updated date="2010-03-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0689.html">CVE-2009-0689</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1571.html">CVE-2009-1571</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2462.html">CVE-2009-2462</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2463.html">CVE-2009-2463</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2466.html">CVE-2009-2466</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2470.html">CVE-2009-2470</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3072.html">CVE-2009-3072</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3075.html">CVE-2009-3075</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3076.html">CVE-2009-3076</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3077.html">CVE-2009-3077</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3274.html">CVE-2009-3274</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3376.html">CVE-2009-3376</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3380.html">CVE-2009-3380</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3979.html">CVE-2009-3979</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0159.html">CVE-2010-0159</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0163.html">CVE-2010-0163</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0169.html">CVE-2010-0169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0171.html">CVE-2010-0171</cve>
                <bugzilla href="http://bugzilla.redhat.com/512128" id="512128">CVE-2009-2462 Mozilla Browser engine crashes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512131" id="512131">CVE-2009-2463 Mozilla Base64 decoding crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512136" id="512136">CVE-2009-2466 Mozilla JavaScript engine crashes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512145" id="512145">CVE-2009-2470 Mozilla data corruption with SOCKS5 reply</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521688" id="521688">CVE-2009-3072 Firefox 3.5.3 3.0.14 browser engine crashes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521691" id="521691">CVE-2009-3075 Firefox 3.5.2 3.0.14 JavaScript engine crashes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521692" id="521692">CVE-2009-3076 Firefox 3.0.14 Insufficient warning for PKCS11 module installation and removal</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521693" id="521693">CVE-2009-3077 Firefox 3.5.3 3.0.14 TreeColumns dangling pointer vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524815" id="524815">CVE-2009-3274 Firefox: Predictable /tmp pathname use</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530162" id="530162">CVE-2009-0689 (rejected CVE-2009-1563) Firefox heap buffer overflow in string to number conversion</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530168" id="530168">CVE-2009-3376 Firefox download filename spoofing with RTL override</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530567" id="530567">CVE-2009-3380 Firefox crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546694" id="546694">CVE-2009-3979 Mozilla crash with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566047" id="566047">CVE-2010-0159 Mozilla crashes with evidence of memory corruption (MFSA 2010-01)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566050" id="566050">CVE-2009-1571 Mozilla incorrectly frees used memory (MFSA 2010-03)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100154002" comment="thunderbird is earlier than 0:1.5.0.12-25.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100154003" comment="thunderbird is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100155" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0155: java-1.4.2-ibm security and bug fix update (Moderate)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0155-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0155.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
    
    <description>The IBM 1.4.2 SR13-FP4 Java release includes the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit.

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handle session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. (CVE-2009-3555)

This update disables renegotiation in the non-default IBM JSSE2 provider
for the Java Secure Socket Extension (JSSE) component. The default JSSE
provider is not updated with this fix. Refer to the IBMJSSE2 Provider
Reference Guide, linked to in the References, for instructions on how to
configure the IBM Java 2 Runtime Environment to use the JSSE2 provider by
default.

When using the JSSE2 provider, unsafe renegotiation can be re-enabled using
the com.ibm.jsse2.renegotiate property. Refer to the following
Knowledgebase article for details:
http://kbase.redhat.com/faq/docs/DOC-20491

This update also fixes the following bug:

* the libjaasauth.so file was missing from the java-1.4.2-ibm packages for
the Intel Itanium architecture (.ia64.rpm). This update adds the file to
the packages for the Itanium architecture, which resolves this issue.
(BZ#572577)

All users of java-1.4.2-ibm are advised to upgrade to these updated
packages, which contain the IBM 1.4.2 SR13-FP4 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-17" />
        <updated date="2010-03-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100155002" comment="java-1.4.2-ibm is earlier than 0:1.4.2.13.4-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155003" comment="java-1.4.2-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100155010" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.13.4-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155011" comment="java-1.4.2-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100155006" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.13.4-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155007" comment="java-1.4.2-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100155004" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.13.4-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155005" comment="java-1.4.2-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100155008" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.13.4-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155009" comment="java-1.4.2-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100155014" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.13.4-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155015" comment="java-1.4.2-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100155012" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.13.4-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155013" comment="java-1.4.2-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100162" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0162: openssl security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0162-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0162.html" />
          <reference source="CVE" ref_id="CVE-2009-3245" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3245.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-0433" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0433.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

It was discovered that OpenSSL did not always check the return value of the
bn_wexpand() function. An attacker able to trigger a memory allocation
failure in that function could cause an application using the OpenSSL
library to crash or, possibly, execute arbitrary code. (CVE-2009-3245)

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handled session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. This update addresses this flaw by implementing the
TLS Renegotiation Indication Extension, as defined in RFC 5746.
(CVE-2009-3555)

Refer to the following Knowledgebase article for additional details about
the CVE-2009-3555 flaw: http://kbase.redhat.com/faq/docs/DOC-20491

A missing return value check flaw was discovered in OpenSSL, that could
possibly cause OpenSSL to call a Kerberos library function with invalid
arguments, resulting in a NULL pointer dereference crash in the MIT
Kerberos library. In certain configurations, a remote attacker could use
this flaw to crash a TLS/SSL server using OpenSSL by requesting Kerberos
cipher suites during the TLS handshake. (CVE-2010-0433)

All OpenSSL users should upgrade to these updated packages, which contain
backported patches to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3245.html">CVE-2009-3245</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0433.html">CVE-2010-0433</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/567711" id="567711">Nessus PCI scan segfaults openssl dependent products due to kerberos enabled in openssl</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/569774" id="569774">CVE-2010-0433 openssl: crash caused by a missing krb5_sname_to_principal() return value check</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/570924" id="570924">CVE-2009-3245 openssl: missing bn_wexpand return value checks</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100162002" comment="openssl is earlier than 0:0.9.8e-12.el5_4.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054003" comment="openssl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100162004" comment="openssl-perl is earlier than 0:0.9.8e-12.el5_4.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054005" comment="openssl-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100162006" comment="openssl-devel is earlier than 0:0.9.8e-12.el5_4.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054007" comment="openssl-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100163" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0163: openssl security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0163-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0163.html" />
          <reference source="CVE" ref_id="CVE-2009-0590" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0590.html" />
          <reference source="CVE" ref_id="CVE-2009-2409" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2409.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handled session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. This update addresses this flaw by implementing the
TLS Renegotiation Indication Extension, as defined in RFC 5746.
(CVE-2009-3555)

Refer to the following Knowledgebase article for additional details about
the CVE-2009-3555 flaw: http://kbase.redhat.com/faq/docs/DOC-20491

Dan Kaminsky found that browsers could accept certificates with MD2 hash
signatures, even though MD2 is no longer considered a cryptographically
strong algorithm. This could make it easier for an attacker to create a
malicious certificate that would be treated as trusted by a browser.
OpenSSL now disables the use of the MD2 algorithm inside signatures by
default. (CVE-2009-2409)

An input validation flaw was found in the handling of the BMPString and
UniversalString ASN1 string types in OpenSSL's ASN1_STRING_print_ex()
function. An attacker could use this flaw to create a specially-crafted
X.509 certificate that could cause applications using the affected function
to crash when printing certificate contents. (CVE-2009-0590)

Note: The affected function is rarely used. No application shipped with Red
Hat Enterprise Linux calls this function, for example.

All OpenSSL users should upgrade to these updated packages, which contain
backported patches to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0590.html">CVE-2009-0590</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2409.html">CVE-2009-2409</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
                <bugzilla href="http://bugzilla.redhat.com/492304" id="492304">CVE-2009-0590 openssl: ASN1 printing crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/510197" id="510197">CVE-2009-2409 deprecate MD2 in SSL cert validation (Kaminsky)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100163002" comment="openssl is earlier than 0:0.9.7a-33.26" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163003" comment="openssl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100163004" comment="openssl-perl is earlier than 0:0.9.7a-33.26" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163005" comment="openssl-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100163006" comment="openssl-devel is earlier than 0:0.9.7a-33.26" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163007" comment="openssl-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100163009" comment="openssl is earlier than 0:0.9.7a-43.17.el4_8.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163003" comment="openssl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100163010" comment="openssl-perl is earlier than 0:0.9.7a-43.17.el4_8.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163005" comment="openssl-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100163011" comment="openssl-devel is earlier than 0:0.9.7a-43.17.el4_8.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163007" comment="openssl-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100164" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0164: openssl097a security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0164-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0164.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handled session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. This update addresses this flaw by implementing the
TLS Renegotiation Indication Extension, as defined in RFC 5746.
(CVE-2009-3555)

Refer to the following Knowledgebase article for additional details about
this flaw: http://kbase.redhat.com/faq/docs/DOC-20491

All openssl097a users should upgrade to these updated packages, which
contain a backported patch to resolve this issue. For the update to take
effect, all services linked to the openssl097a library must be restarted,
or the system rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100164002" comment="openssl097a is earlier than 0:0.9.7a-9.el5_4.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100164003" comment="openssl097a is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100165" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0165: nss security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0165-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0165.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
    
    <description>Network Security Services (NSS) is a set of libraries designed to support
the cross-platform development of security-enabled client and server
applications. Applications built with NSS can support SSLv2, SSLv3, TLS,
and other security standards.

Netscape Portable Runtime (NSPR) provides platform independence for non-GUI
operating system facilities. These facilities include threads, thread
synchronization, normal file and network I/O, interval timing, calendar
time, basic memory management (malloc and free), and shared library
linking.

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handled session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. This update addresses this flaw by implementing the
TLS Renegotiation Indication Extension, as defined in RFC 5746.
(CVE-2009-3555)

Refer to the following Knowledgebase article for additional details about
this flaw: http://kbase.redhat.com/faq/docs/DOC-20491

Users of Red Hat Certificate System 7.3 and 8.0 should review the following
Knowledgebase article before installing this update:
http://kbase.redhat.com/faq/docs/DOC-28439

All users of NSS are advised to upgrade to these updated packages, which
update NSS to version 3.12.6. This erratum also updates the NSPR packages
to the version required by NSS 3.12.6. All running applications using the
NSS library must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165004" comment="nspr-devel is earlier than 0:4.8.4-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165005" comment="nspr-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165002" comment="nspr is earlier than 0:4.8.4-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165003" comment="nspr is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165006" comment="nss is earlier than 0:3.12.6-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165007" comment="nss is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165010" comment="nss-tools is earlier than 0:3.12.6-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165011" comment="nss-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165012" comment="nss-devel is earlier than 0:3.12.6-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165013" comment="nss-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165008" comment="nss-pkcs11-devel is earlier than 0:3.12.6-1.el5_4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165009" comment="nss-pkcs11-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165017" comment="nspr-devel is earlier than 0:4.8.4-1.1.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165018" comment="nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165015" comment="nspr is earlier than 0:4.8.4-1.1.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165016" comment="nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165019" comment="nss is earlier than 0:3.12.6-1.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165020" comment="nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165021" comment="nss-tools is earlier than 0:3.12.6-1.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165022" comment="nss-tools is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100165023" comment="nss-devel is earlier than 0:3.12.6-1.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165024" comment="nss-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100166" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0166: gnutls security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0166-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0166.html" />
          <reference source="CVE" ref_id="CVE-2009-2409" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2409.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
    
    <description>The GnuTLS library provides support for cryptographic algorithms and for
protocols such as Transport Layer Security (TLS).

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handled session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. This update addresses this flaw by implementing the
TLS Renegotiation Indication Extension, as defined in RFC 5746.
(CVE-2009-3555)

Refer to the following Knowledgebase article for additional details about
the CVE-2009-3555 flaw: http://kbase.redhat.com/faq/docs/DOC-20491

Dan Kaminsky found that browsers could accept certificates with MD2 hash
signatures, even though MD2 is no longer considered a cryptographically
strong algorithm. This could make it easier for an attacker to create a
malicious certificate that would be treated as trusted by a browser. GnuTLS
now disables the use of the MD2 algorithm inside signatures by default.
(CVE-2009-2409)

Users of GnuTLS are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all applications linked to the GnuTLS library must be restarted, or
the system rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2409.html">CVE-2009-2409</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
                <bugzilla href="http://bugzilla.redhat.com/510197" id="510197">CVE-2009-2409 deprecate MD2 in SSL cert validation (Kaminsky)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100166006" comment="gnutls-devel is earlier than 0:1.4.1-3.el5_4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100166007" comment="gnutls-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100166004" comment="gnutls-utils is earlier than 0:1.4.1-3.el5_4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100166005" comment="gnutls-utils is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100166002" comment="gnutls is earlier than 0:1.4.1-3.el5_4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100166003" comment="gnutls is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100167" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0167: gnutls security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0167-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0167.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-0731" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0731.html" />
    
    <description>The GnuTLS library provides support for cryptographic algorithms and for
protocols such as Transport Layer Security (TLS).

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handled session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. This update addresses this flaw by implementing the
TLS Renegotiation Indication Extension, as defined in RFC 5746.
(CVE-2009-3555)

Refer to the following Knowledgebase article for additional details about
the CVE-2009-3555 flaw: http://kbase.redhat.com/faq/docs/DOC-20491

A flaw was found in the way GnuTLS extracted serial numbers from X.509
certificates. On 64-bit big endian platforms, this flaw could cause the
certificate revocation list (CRL) check to be bypassed; cause various
GnuTLS utilities to crash; or, possibly, execute arbitrary code.
(CVE-2010-0731)

Users of GnuTLS are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all applications linked to the GnuTLS library must be restarted, or
the system rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0731.html">CVE-2010-0731</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/573028" id="573028">CVE-2010-0731 gnutls: gnutls_x509_crt_get_serial incorrect serial decoding from ASN1 (BE64) [GNUTLS-SA-2010-1]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100167004" comment="gnutls-devel is earlier than 0:1.0.20-4.el4_8.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100167005" comment="gnutls-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100167002" comment="gnutls is earlier than 0:1.0.20-4.el4_8.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100167003" comment="gnutls is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100168" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0168: httpd security and enhancement update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0168-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0168.html" />
          <reference source="CVE" ref_id="CVE-2010-0408" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0408.html" />
          <reference source="CVE" ref_id="CVE-2010-0434" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0434.html" />
    
    <description>The Apache HTTP Server is a popular web server.

It was discovered that mod_proxy_ajp incorrectly returned an "Internal
Server Error" response when processing certain malformed requests, which
caused the back-end server to be marked as failed in configurations where
mod_proxy is used in load balancer mode. A remote attacker could cause
mod_proxy to not send requests to back-end AJP (Apache JServ Protocol)
servers for the retry timeout period (60 seconds by default) by sending
specially-crafted requests. (CVE-2010-0408)

A use-after-free flaw was discovered in the way the Apache HTTP Server
handled request headers in subrequests. In configurations where subrequests
are used, a multithreaded MPM (Multi-Processing Module) could possibly leak
information from other requests in request replies. (CVE-2010-0434)

This update also adds the following enhancement:

* with the updated openssl packages from RHSA-2010:0162 installed, mod_ssl
will refuse to renegotiate a TLS/SSL connection with an unpatched client
that does not support RFC 5746. This update adds the
"SSLInsecureRenegotiation" configuration directive. If this directive is
enabled, mod_ssl will renegotiate insecurely with unpatched clients.
(BZ#567980)

Refer to the following Red Hat Knowledgebase article for more details about
the changed mod_ssl behavior: http://kbase.redhat.com/faq/docs/DOC-20491

All httpd users should upgrade to these updated packages, which contain
backported patches to correct these issues and add this enhancement. After
installing the updated packages, the httpd daemon must be restarted for the
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0408.html">CVE-2010-0408</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0434.html">CVE-2010-0434</cve>
                <bugzilla href="http://bugzilla.redhat.com/567980" id="567980">[RFE] mod_ssl: Add SSLInsecureRenegotiation directive [rhel-5]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/569905" id="569905">CVE-2010-0408 httpd: mod_proxy_ajp remote temporary DoS</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/570171" id="570171">CVE-2010-0434 httpd: request header information leak</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100168006" comment="httpd-manual is earlier than 0:2.2.3-31.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100168007" comment="httpd-manual is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100168004" comment="httpd-devel is earlier than 0:2.2.3-31.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100168005" comment="httpd-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100168008" comment="mod_ssl is earlier than 0:2.2.3-31.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100168009" comment="mod_ssl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100168002" comment="httpd is earlier than 0:2.2.3-31.el5_4.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100168003" comment="httpd is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100173" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0173: openssl096b security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0173-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0173.html" />
          <reference source="CVE" ref_id="CVE-2009-3245" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3245.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

It was discovered that OpenSSL did not always check the return value of the
bn_wexpand() function. An attacker able to trigger a memory allocation
failure in that function could cause an application using the OpenSSL
library to crash or, possibly, execute arbitrary code. (CVE-2009-3245)

All openssl096b users should upgrade to these updated packages, which
contain a backported patch to resolve this issue. For the update to take
effect, all programs using the openssl096b library must be restarted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3245.html">CVE-2009-3245</cve>
                <bugzilla href="http://bugzilla.redhat.com/570924" id="570924">CVE-2009-3245 openssl: missing bn_wexpand return value checks</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100173002" comment="openssl096b is earlier than 0:0.9.6b-16.50" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100173003" comment="openssl096b is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100173005" comment="openssl096b is earlier than 0:0.9.6b-22.46.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100173003" comment="openssl096b is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100175" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0175: httpd security, bug fix, and enhancement update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0175-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0175.html" />
          <reference source="CVE" ref_id="CVE-2010-0434" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0434.html" />
    
    <description>The Apache HTTP Server is a popular web server.

A use-after-free flaw was discovered in the way the Apache HTTP Server
handled request headers in subrequests. In configurations where subrequests
are used, a multithreaded MPM (Multi-Processing Module) could possibly leak
information from other requests in request replies. (CVE-2010-0434)

This update also fixes the following bug:

* a bug was found in the mod_dav module. If a PUT request for an existing
file failed, that file would be unexpectedly deleted and a "Could not get
next bucket brigade" error logged. With this update, failed PUT requests no
longer cause mod_dav to delete files, which resolves this issue.
(BZ#572932)

As well, this update adds the following enhancement:

* with the updated openssl packages from RHSA-2010:0163 installed, mod_ssl
will refuse to renegotiate a TLS/SSL connection with an unpatched client
that does not support RFC 5746. This update adds the
"SSLInsecureRenegotiation" configuration directive. If this directive is
enabled, mod_ssl will renegotiate insecurely with unpatched clients.
(BZ#575805)

Refer to the following Red Hat Knowledgebase article for more details about
the changed mod_ssl behavior: http://kbase.redhat.com/faq/docs/DOC-20491

All httpd users should upgrade to these updated packages, which contain
backported patches to correct these issues and add this enhancement. After
installing the updated packages, the httpd daemon must be restarted for the
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-25" />
        <updated date="2010-03-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0434.html">CVE-2010-0434</cve>
                <bugzilla href="http://bugzilla.redhat.com/570171" id="570171">CVE-2010-0434 httpd: request header information leak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/572932" id="572932">"could not get next bucket brigade" while a client is doing a PUT results in data loss</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575805" id="575805">mod_ssl: Add SSLInsecureRenegotiation directive [rhel-4]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100175008" comment="httpd-manual is earlier than 0:2.0.52-41.ent.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100175009" comment="httpd-manual is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100175006" comment="httpd-suexec is earlier than 0:2.0.52-41.ent.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100175007" comment="httpd-suexec is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100175004" comment="httpd-devel is earlier than 0:2.0.52-41.ent.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100175005" comment="httpd-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100175010" comment="mod_ssl is earlier than 0:2.0.52-41.ent.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100175011" comment="mod_ssl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100175002" comment="httpd is earlier than 0:2.0.52-41.ent.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100175003" comment="httpd is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100178" version="505" class="patch">
      <metadata>
        <title>RHSA-2010:0178: Red Hat Enterprise Linux 5.5 kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0178-04" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0178.html" />
          <reference source="CVE" ref_id="CVE-2009-4027" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4027.html" />
          <reference source="CVE" ref_id="CVE-2009-4307" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4307.html" />
          <reference source="CVE" ref_id="CVE-2010-0727" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0727.html" />
          <reference source="CVE" ref_id="CVE-2010-1188" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1188.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* a race condition was found in the mac80211 implementation, a framework
used for writing drivers for wireless devices. An attacker could trigger
this flaw by sending a Delete Block ACK (DELBA) packet to a target system,
resulting in a remote denial of service. Note: This issue only affected
users on 802.11n networks, and that also use the iwlagn driver with Intel
wireless hardware. (CVE-2009-4027, Important)

* a flaw was found in the gfs2_lock() implementation. The GFS2 locking code
could skip the lock operation for files that have the S_ISGID bit
(set-group-ID on execution) in their mode set. A local, unprivileged user
on a system that has a GFS2 file system mounted could use this flaw to
cause a kernel panic. (CVE-2010-0727, Moderate)

* a divide-by-zero flaw was found in the ext4 file system code. A local
attacker could use this flaw to cause a denial of service by mounting a
specially-crafted ext4 file system. (CVE-2009-4307, Low)

These updated packages also include several hundred bug fixes for and
enhancements to the Linux kernel. Space precludes documenting each of these
changes in this advisory and users are directed to the Red Hat Enterprise
Linux 5.5 Release Notes for information on the most significant of these
changes:

http://www.redhat.com/docs/en-US/Red_Hat_Enterprise_Linux/5.5/html/Release_Notes/

Also, for details concerning every bug fixed in and every enhancement added
to the kernel for this release, refer to the kernel chapter in the Red Hat
Enterprise Linux 5.5 Technical Notes:

http://www.redhat.com/docs/en-US/Red_Hat_Enterprise_Linux/5.5/html/Technical_Notes/kernel.html

All Red Hat Enterprise Linux 5 users are advised to install these updated
packages, which address these vulnerabilities as well as fixing the bugs
and adding the enhancements noted in the Red Hat Enterprise Linux 5.5
Release Notes and Technical Notes. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4027.html">CVE-2009-4027</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4307.html">CVE-2009-4307</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0727.html">CVE-2010-0727</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1188.html">CVE-2010-1188</cve>
                <bugzilla href="http://bugzilla.redhat.com/250561" id="250561">w83627ehf sensor not supported by 2.6.18-8.1.8.el5 kernel</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/322881" id="322881">/proc/self/smaps unreadable after setuid</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/427709" id="427709">dump and large file ops are slow, please implement kernel workaround</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/446061" id="446061">IT87 hwmon module does not support later chipset revisions.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/448130" id="448130">50-75 % drop in cfq read performance compared to rhel 4.6+</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/450121" id="450121">RFE: Symbol pci_domain_nr needs to be added the whitelist for ppc64</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/452129" id="452129">memory mapped files not updating timestamps</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/456181" id="456181">Read speed of /sbin/dump command is critically slow with CFQ I/O scheduler</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/461100" id="461100">[PATCH]RHEL5:fix dio write returning EIO due to bh race</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/461442" id="461442">VLAN driver logs excessive messages in kernel message log (dmesg)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/461506" id="461506">kernel BUG at mm/mempool.c:121! caused by lvcreate</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/466681" id="466681">pygrub uses cached and eventually outdated grub.conf, kernel and initrd</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/469976" id="469976">The EDAC driver not support The Intel 3200 and 3210 Chipsets</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/473404" id="473404">[5.3] Kdump Kernel Hangs on Dell AMD Machines</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/475457" id="475457">[FUJITSU 5.5] More tracepoints support - networking</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/476075" id="476075">use KVM pvclock code to detect/correct lost ticks</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/481658" id="481658">Backport partition table sanity checks to RHEL5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/482756" id="482756">GFS2: After gfs2_grow, new size is not seen immediately</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/483646" id="483646">bridge: Fix LRO crash with tun (tun_chr_read())</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/485016" id="485016">HP6510b close lid cause system crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/485099" id="485099">Inconsistent behaviour in stripping SUID/SGID flags when chmod/chgrp directories</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/486092" id="486092">httpd Sendfile troubles reading from a CIFS share</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/486975" id="486975">kernel: Unable to write to file as non-root user with setuid and setgid bit set</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/487346" id="487346">ifdown bond0 causes a deadlock</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/487763" id="487763">Adding bonding in balance-alb mode to bridge causes host network connectivity to be lost</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/488161" id="488161">(direct_io) __blockdev_direct_IO calls kzalloc for dio struct causes OLTP performance regression</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/489566" id="489566">when booted with P-state limit, limit can never be increased</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/489774" id="489774">AVC denied 0x100000 for a directory with eCryptFS and Apache</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/489931" id="489931">NFS umount deadlock in rpciod with rpc_shutdown_client()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/491010" id="491010">ip_vs module (LVS) routes demasqueraded packets out wrong interface on multihomed directors</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/493517" id="493517">get_partstats() returns NULL and causes panic</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/494120" id="494120">XEN NMI detection fails on Dell 1950 server</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495059" id="495059">deadlock with NFSv4 reclaimer thread reconnecting socket</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/496716" id="496716">GFS2 ">>" will not update ctime,mtime after appending to the file</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/496847" id="496847">[Patch] jbd slab cache creation/deletion is racey</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/497200" id="497200">definition of file-nr differs from sysctl/fs.txt to filesystems/proc.txt</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/497257" id="497257">The tmpfs filesystem goes on readonly mode.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/498461" id="498461">I/O scheduler setting via elevator kernel option not picked up by Xen guest</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/498489" id="498489">blktrace stops working after a trace-file-directory replacement</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/498510" id="498510">don't OOM kill task during fresh huge page allocation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/498532" id="498532">RHEL5 cmirror tracker: multiple device failure of fully synced cmirror causes corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/498976" id="498976">GFS2 - probably lost glock call back</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/499019" id="499019">CRM 1908390 - BUG: warning at fs/inotify.c:181/set_dentry_child_flags()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/499063" id="499063">[RHEL5] undefined reference to `__udivdi3'</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/499253" id="499253">kernel leaves initrd in vmalloc space</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/499884" id="499884">A bond's preferred primary setting is lost after bringing down and up of the primary slave.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/500346" id="500346">Please update mlx4_en driver for performance improvements and bug fixes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/500653" id="500653">NFS: problems with virtual IP and locking</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/500838" id="500838">CIFS update for RHEL5.5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/501030" id="501030">Need to display the current settings of the options bits in st driver.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/501075" id="501075">soft lockups with software RAID6 create and re-sync'</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/502491" id="502491">rtl8139 doesn't work with bonding in alb mode</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/502531" id="502531">GFS2: smbd proccess hangs with flock() call.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/502572" id="502572">cat stop responding after 1st cat and CTRL+C interrupt.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/502822" id="502822">OOPS in "inet_select_addr" on ICMP when "icmp_errors_use_inbound_ifaddr" is turned on</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/502826" id="502826">[RHEL-5 Xen]: F-11 Xen 64-bit domU cannot be started with > 2047MB of memory</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/502927" id="502927">dm-raid1 can return write request as finished and later revert the data</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/502965" id="502965">Snapshot creation in VG with 1k extent size can fail</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/505331" id="505331">GFS2: genesis stuck writing to unlinked file</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/506200" id="506200">ahci: add device ID for 82801JI sata controller</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/506217" id="506217">Implement blkdev_releasepage() to release the buffer_heads and pages after we release private data belonging to a mounted filesystem.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/506799" id="506799">Serial ports don't function on 4838-310 without pnpacpi=off boot option</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/506899" id="506899">timeout with physical cdrom on a PV guest</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/507159" id="507159">Cannot increase open file limit greater then 1024 * 1024 (1048576)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/507549" id="507549">Bug in lockd prevents a locks being freed.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/509625" id="509625">kernel: fd leak if pipe() is called with an invalid address [rhel-5.4]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/509713" id="509713">getdents() reports /proc/1/task/1/ as DT_UNKNOWN.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/509809" id="509809">Host panic when try to run kvm guest on a host which restored from suspend.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/509866" id="509866">[RHEL5.3] Even if a process have received data but schedule() in select() cannot return</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/509962" id="509962">RHEL 5.4 Beta fails to activate sw raid devices, unable to install to sw raid</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/510225" id="510225">Segfault/Infinite loop in TLS double access</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/510257" id="510257">allow more flexibility for read_ahead_kb store</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/510746" id="510746">BUG: warning at kernel/softirq.c:138/local_bh_enable() (Tainted: G     )</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/510814" id="510814">CPU hotplug notifiers for KVM (for suspend and cpu hotplug support)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/510818" id="510818">cxgb3 driver fixes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/511170" id="511170">[NetApp 5.5 bug] nfs_readdir() may fail to return all the files in the directory</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/511211" id="511211">cpuspeed behave strangely after suspend/resume on intel machine hp-dl580g5-01.rhts.bos.redhat.com</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/511278" id="511278">/proc/self/exe reports wrong path after fstat on NFSv4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/511374" id="511374">ExpressCards should be detected and useful</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512006" id="512006">[LTC 5.5 FEAT] AF_IUCV SOCK_SEQPACKET support [201885]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512013" id="512013">[LTC 5.5 FEAT] Support ACPI S3/S4 Sleeping States [201941]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512203" id="512203">[LTC 5.5 FEAT] Update ibmvscsi driver with upstream multipath enhancements [201916]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512361" id="512361">Server should return NFS4ERR_ATTRNOTSUPP if attribute 'ACL' is not supported</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512552" id="512552">Can't write to XFS mount during raid5 resync</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/513136" id="513136">[RHEL5.4 Snapshot1] File write performance degradation in RHEL5.4 Snapshot1 compared to RHEL5.3 GA</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/513203" id="513203">system fails to go into s4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/513410" id="513410">cifs: panic when mounting DFS referral with hostname that can't be resolved</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/513692" id="513692">ifdown on nVidia CK804 (rev f3) NIC doesn't work</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/513827" id="513827">Out of SW-IOMMU space: External hard disk inaccessible</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/514141" id="514141">mlx4_core fails to load on systems with32 cores</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/514147" id="514147">TCP traffic for VLAN interfaces fails over mlx4_en parent interface.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/514250" id="514250">e100: return PCI_ERS_RESULT_DISCONNECT on permanent failure</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/514256" id="514256">igb: return PCI_ERS_RESULT_DISCONNECT on permanent failure</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/514589" id="514589">r8169 stopping all activity until the link is reset</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/514654" id="514654">nfsv4-server return NFS4ERR_BAD_STATEID, but return NFS4ERR_EXPIRED when it has invalid stateID</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515176" id="515176">scsi_transport_fc: fc_user_scan can loop forever, needs mutex with rport list changes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515252" id="515252">CIFS multiuser mount fails to locate smbid</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515312" id="515312">[Broadcom 5.5 feat] Update tg3 and add support for 5717/5718 and 57765 asic revs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515405" id="515405">[PATCH RHEL5.5] :NFS  Handle putpubfh operation correctly.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515408" id="515408">Code under CONFIG_X86_VSMP incorrect after an incorrect patch pull from upstream</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515529" id="515529">ENOSPC during fsstress leads to filesystem corruption on ext2, ext3, and ext4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515716" id="515716">[Broadcom 5.5 FEAT] Update bnx2x to 1.52.1-5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515753" id="515753">kdump corefile cannot be backtraced in IA64</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515812" id="515812">[Emulex 5.5 feat] Three scsi_nl APIs should be added to kabi_whitelist</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515863" id="515863">FEAT RHEL5.5: Make MegaRAID SAS driver legacy I/O port free</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/516541" id="516541">[NetApp 5.5 bug] Emulex FC ports on RHEL 5.4 GA offlined during target controller faults</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/516589" id="516589">Kernel netlink neighbor updates not sent to multicast group (RTMGRP_NEIGH)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/516833" id="516833">[QLogic 5.5 feat] netxen - P3 updates</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/516881" id="516881">[Promise 5.5 feat] Update stex driver to version 4.6.0102.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517377" id="517377">[Broadcom 5.5 FEAT] Update bnx2 to 2.0.2</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517378" id="517378">[Broadcom 5.5 FEAT] Update bnx2i and cnic drivers</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517454" id="517454">Add Support for Huawei EC1260 to the RHEL5 kernel</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517504" id="517504">SCTP Messages out of order</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517893" id="517893">[QLogic 5.5 bug] qlge - fix hangs and read perfromance</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517922" id="517922">[QLogic 5.5 bug] qla2xxx - allow use of MSI when MSI-X disabled.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517928" id="517928">bare-metal and xen: /proc/cpuinfo does not list all CPU flags presented by CPU</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/518103" id="518103">VTD IOMMU 1:1 mapping performance and bug fixes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/518106" id="518106">[RFE] GFS2: New mount option: -o errors=withdraw|panic</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/518496" id="518496">Add kernel (scsi_dh_rdac) support for Sun 6540 storage arrays.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519049" id="519049">GFS2 Filesystem Withdrawal: fatal: invalid metadata block</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519076" id="519076">Update for HighPoint RocketRAID hptiop driver in RHEL 5.5 kernel</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519086" id="519086">[Cisco 5.5 FEAT] Include/Update support for enic version 1.1.0.100</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519091" id="519091">[Cisco 5.5 FEAT] Update fnic to version x.y.z</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519112" id="519112">statfs on NFS partition always returns 0</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519184" id="519184">nfsnobody == 4294967294 causes idmapd to stop responding</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519447" id="519447">[QLogic 5.5 bug] qla2xxx - updates and fixes from upstream or testing.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519453" id="519453">[QLogic 5.5 bug] qlge - updates and fixes from upstream or testing.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519771" id="519771">pvclock return bogus wallclock values</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/520192" id="520192">kernel panics from list corruption when using a tape drive connected through cciss adapter</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/520297" id="520297">kernel: ipv4: make ip_append_data() handle NULL routing table [rhel-5.5]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/520867" id="520867">glibc should call pselect() and ppoll() on ia64 kernel</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521081" id="521081">[RHEL5.4 RC2] KMP for xen kernel cannot be applied</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521093" id="521093">Cluster hangs after node rejoins from simulated network outage</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521203" id="521203">Update arcmsr driver</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521345" id="521345">vlan with sky2 is not possible anymore with kernel-xen 2.6.18-164</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521865" id="521865">Xen fails to boot on ia64 with > 128GB memory</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/522600" id="522600">bnx2x: increase coalescing granularity to 4us instead of 12us</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/522629" id="522629">[LTC 5.5 FEAT] Provide balloon driver for KVM guests [202025]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/522745" id="522745">thinkpad_acpi: CMOS NVRAM (7) and EC (5) do not agree on display brightness level</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/522846" id="522846">Nehalem Turbo Boost "ida" flag not present in Xen kernel's /proc/cpuinfo output</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/523335" id="523335">sound no longer works after upgrade to RHEL 5.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/523450" id="523450">cpu1 didn't come online in a kvm i686 guest</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/523888" id="523888">[RFE] Add qcserial module to RHEL 5 kernel</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/523982" id="523982">kernel: ipt_recent: sanity check hit count [rhel-5.5]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524052" id="524052">Boot hang when installing HVM DomU</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524129" id="524129">LVS master and backup director - Synchronised connections on backup director have unsuitable timeout value</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524335" id="524335">[LSI 5.5 feat] update rdac scsi device handler to upstream</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524651" id="524651">Lost the network in a KVM VM on top of 5.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524702" id="524702">kvm_clock patches are slowing guests' shutdown to unusable levels</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524787" id="524787">cannot compile kernel with CONFIG_ACPI_DEBUG=y</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/525100" id="525100">resize2fs online resize hangs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/525390" id="525390">FEAT: RHEL 5.5 - update ALSA HDA audio driver from upstream</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/525467" id="525467">Xen panic in msi_msg_read_remap_rte with acpi=off</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526043" id="526043">Implement smp_call_function_[single|many] in x86_64 and i386</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526092" id="526092">rw_semaphore bug</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526259" id="526259">[Cisco 5.5 feat] libfc bug fixes and improvements</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526481" id="526481">bnx2: panic in bnx2_poll_work()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526612" id="526612">kernel: BUG: soft lockup with dcache_lock</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526751" id="526751">xset b as well as setterm -bfreq set beep to wrong pitch with CONFIG_HDA_INPUT_BEEP</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526819" id="526819">system crashes in audit_update_watch()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526888" id="526888">NFSv4 reclaimer thread in an infinite loop</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/527424" id="527424">igb driver does not work with kexec</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/527496" id="527496">pci_dev->is_enabled is not set in RHEL5.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/527748" id="527748">/proc/net/dev sometimes contains bogus values (BCM5706)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/528054" id="528054">ext4: tech preview refresh</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/528070" id="528070">skip inodes without pages to free in drop_pagecache_sb()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/528153" id="528153">scsi: export symbol  scsilun_to_int</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/529431" id="529431">Update to 2.6.18-164.el5PAE causes working CIFS mount to fail</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/529796" id="529796">GFS2: Enhance statfs and quota usability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530537" id="530537">dlm_recv deadlock under memory pressure while processing GFP_KERNEL locks.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531016" id="531016">NFS: stale nfs_fattr passed to nfs_readdir_lookup()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531268" id="531268">Timedrift on VM with pv_clock enabled, causing system hangs and sporadic time behaviour</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531488" id="531488">[scsi] Fix inconsistent usage of max_lun</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531552" id="531552">threads on pthread_mutex_lock wake in fifo order, but posix specifies by priority</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531593" id="531593">[QLogic 5.5 bug] qla2xxx - enable MSI-X and correct/cleanup irq request code</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531784" id="531784">ipoib: null tx/rx_ring skb pointers on free</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/532701" id="532701">dprintk macro in NFS code doesn't work in some files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533489" id="533489">[Cisco 5.5 feat] Need scsi and libfc symbols to be added to whitelist_file</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533496" id="533496">xen server crashes when used with network bonding modes 5 or 6</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/534018" id="534018">kernel: sysctl: require CAP_SYS_RAWIO to set mmap_min_addr [rhel-5.5]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/534158" id="534158">Updates for mlx4 drivers</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537514" id="537514">[LSI 5.5 feat] make scsi_dh_activate asynchronous to address the slower lun failovers with large number of luns</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537876" id="537876">Kernel panic when using GRO through ixgbe driver and xen bridge</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/538407" id="538407">PCI AER code introduced a compile problem in powerpc</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/538484" id="538484">gfs2 rename rgrp lock issue</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/539240" id="539240">glock_workqueue -- glock ref count via gfs2_glock_hold</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/539521" id="539521">Call trace error display when resume from suspend to disk (ide block) - pvclock related</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/540811" id="540811">[RHEL5 Xen]: PV guest crash on poweroff</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/541149" id="541149">CVE-2009-4026 CVE-2009-4027 kernel: mac80211: fix spurious delBA handling</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/541213" id="541213">Possible access to invalid memory</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/541325" id="541325">[RHEL5]: A new xenfb thread is created on every save/restore</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/541953" id="541953">kernel panic when doing cpu offline/online frequently on hp-dl785g5-01.rhts.eng.bos.redhat.com</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/541956" id="541956">kernel: sleeping vfs_check_frozen in called in atomic context from do_wp_page [rhel-5.5]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/542593" id="542593">recursive lock of devlist_mtx</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/542746" id="542746">[QLogic 5.5 feat] netxen P3 - updates from 2.6.32</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/542834" id="542834">[QLogic 5.5 bug] qla2xxx - further testing updates for 5.5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/543057" id="543057">[QLogic 5.5 bug] qla2xxx - testing updates #3</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/543270" id="543270">Fix deadlock in multipath when removing a device</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/543307" id="543307">Lock snapshot while reporting status</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/544138" id="544138">PTRACE_KILL hangs in 100% cpu loop</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/544349" id="544349">RHEL5: fallocate on XFS returns incorrect value on ENOSPC</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/544417" id="544417">cifs: possible NULL pointer dereference in mount-time DFS referral chasing code</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/544448" id="544448">Strange vm performance degradation moving 32 bit app from RHEL 4.6 32bit to 5.4 64bit</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/545121" id="545121">possible null pointer dereference in ieee80211_change_iface</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/545135" id="545135">[Broadcom 5.5 feat] Add support for 57765 asic revs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/545612" id="545612">Please implement upstream fix for potential filesystem corruption bug</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/545899" id="545899">rtl8180 shows 0% signal strength while connected</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546281" id="546281">wireless: report reasonable bitrate for MCS rates through wext</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546326" id="546326">bnx2: panic in bnx2_free_tx_skbs() because of wrong frags index</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546624" id="546624">RFE:  Add debug to bonding driver as module option</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547251" id="547251">CVE-2009-4307 kernel: ext4: avoid divide by zero when trying to mount a corrupted file system</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547762" id="547762">PCI AER: HEST FIRMWARE FIRST support</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/547980" id="547980">[SR-IOV] VF can not be enabled in Dom0</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/548079" id="548079">[RHEL5.4][REGRESSION] iptables --reject-with tcp-reset doesn't work</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/548565" id="548565">aio: eventfd support introduced a 0.5% performance regression</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549397" id="549397">I/O errors while accessing loop devices or file-based Xen images from GFS volume after Update from RHEL 5.3 to 5.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549460" id="549460">[Emulex 5.5 bug] Multiple bug fixes for be2net</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549465" id="549465">Cannot run NVIDIA display driver on 32-bit RHEL 5.3 or 5.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549750" id="549750">audit rule with directory auditing crashes the kernel</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549763" id="549763">[Emulex 5.5 bug] Update lpfc driver to 8.2.0.63 FC/FCoE</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/550014" id="550014">khungtaskd not stopped during suspend</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/550148" id="550148">[Cisco 5.5 bug] Update enic driver to version 1.1.0.241a</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552675" id="552675">ipmi_watchdog deadlock</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/553324" id="553324">[RHEL5 Xen]: Cpu frequency scaling is broken on Intel</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/553447" id="553447">GFS2: fatal: filesystem consistency error in gfs2_ri_update</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/553670" id="553670">filesystem mounted with ecryptfs_xattr option could not be written</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/554078" id="554078">Lost the network in a KVM VM on top of 5.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/554545" id="554545">[Emulex 5.5 bug] Update be2iscsi driver for bugfixes</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555120" id="555120">dm-raid1: dmsetup stuck at suspending failed mirror device</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555171" id="555171">dm-raid1: kernel panic when bio on recovery failed region is released</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555604" id="555604">[Emulex 5.5 bug] Update lpfc driver to 8.2.0.63.1p FC/FCoE</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557095" id="557095">kvm pvclock on i386 suffers from double registering</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557109" id="557109">[5.4] VLAN performance issue with 10gbE Mellanox NICs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557172" id="557172">inserting w83627hf kernel module results in panic</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557792" id="557792">[Emulex 5.5 bug] Update lpfc driver to 8.2.0.63.2p FC/FCoE</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557974" id="557974">e1000e: wol is broken on 2.6.18-185.el5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/558809" id="558809">e1000 &amp; e1000e: Memory corruption/paging error when tx hang occurs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559329" id="559329">[sky2] initial carrier state is always on</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559410" id="559410">posix_fadvise() handles its arguments incorrectly in 32-bit compat mode.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559711" id="559711">Add wireless fixes from 2.6.32.y tree</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/560944" id="560944">kernel panic during modprobe smsc47m1</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561076" id="561076">igb: fix warning in drivers/net/igb/igb_ethtool.c:2090</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561322" id="561322">[Emulex 5.5 bug] be2net bug fixes for be3 hardware from Alpha testing</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561578" id="561578">[Broadcom 5.5 feat] Update bnx2 firmware</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/562006" id="562006">WARNING: APIC timer calibration may be wrong</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/562947" id="562947">late breaking CIFS patches for RHEL5.5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564145" id="564145">[Emulex 5.5 bug] Fix scsi eh callouts and add support for new chip to be2iscsi driver</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564399" id="564399">f71805f hwmon driver passes '&amp;sio_data' to platform_device_add_data()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/564506" id="564506">[Emulex 5.5 bug] Update lpfc driver to 8.2.0.63.3p FC/FCoE</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/565494" id="565494">"dmraid -ay" panics kernel</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/565594" id="565594">[Cisco 5.5 bug] Update fnic to 1.4.0.98 to fix FIP crash/hang issues</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/565964" id="565964">[Broadcom 5.5 bug] tg3: 5717 and 57765 asic revs can panic under load</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/565965" id="565965">[Broadcom 5.5 bug] tg3: Race condition - performance / panic with 57765 devices</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566016" id="566016">[Broadcom 5.5 bug] tg3: 57765 LED does not work correctly</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566221" id="566221">GFS2: Use correct GFP for alloc page on write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566696" id="566696">iwl5000/5300 fail to transmit data on N-only netwrok</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/567718" id="567718">[Emulex 5.5 bug] be2net bug fixes for be3 hardware from Alpha testing</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/568040" id="568040">network does not work with rhel 5.5 snap1 x64 server, xen kernel, and r8169 driver</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/568153" id="568153">ixgbe: stop unmapping DMA buffers too early</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/569610" id="569610">GFS2 - fiemap - Kernel BUG at fs/gfs2/bmap.c:433 [rhel-5.5]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/570814" id="570814">Disk performance regression in CFQ</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/570863" id="570863">CVE-2010-0727 kernel: bug in GFS/GFS2 locking code leads to dos</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/571818" id="571818">Iozone Outcache testing has a greater than 5 % performance regression on reads</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/573098" id="573098">[5.4] VLAN performance issue with 10gbE Mellanox NICs</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178004" comment="kernel-headers is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178002" comment="kernel is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178024" comment="kernel-doc is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178022" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178014" comment="kernel-devel is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178008" comment="kernel-debug is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178016" comment="kernel-kdump is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178006" comment="kernel-xen-devel is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178012" comment="kernel-debug-devel is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178020" comment="kernel-PAE is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178018" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100178010" comment="kernel-xen is earlier than 0:2.6.18-194.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100181" version="506" class="patch">
      <metadata>
        <title>RHSA-2010:0181: brltty security and bug fix update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0181-05" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0181.html" />
          <reference source="CVE" ref_id="CVE-2008-3279" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-3279.html" />
    
    <description>brltty (Braille TTY) is a background process (daemon) which provides access
to the Linux console (when in text mode) for a blind person using a
refreshable braille display. It drives the braille display, and provides
complete screen review functionality.

It was discovered that a brltty library had an insecure relative RPATH
(runtime library search path) set in the ELF (Executable and Linking
Format) header. A local user able to convince another user to run an
application using brltty in an attacker-controlled directory, could run
arbitrary code with the privileges of the victim. (CVE-2008-3279)

These updated packages also provide fixes for the following bugs:

* the brltty configuration file is documented in the brltty manual page,
but there is no separate manual page for the /etc/brltty.conf configuration
file: running "man brltty.conf" returned "No manual entry for brltty.conf"
rather than opening the brltty manual entry. This update adds brltty.conf.5
as an alias to the brltty manual page. Consequently, running "man
brltty.conf" now opens the manual entry documenting the brltty.conf
specification. (BZ#530554)

* previously, the brltty-pm.conf configuration file was installed in the
/etc/brltty/ directory. This file, which configures Papenmeier Braille
Terminals for use with Red Hat Enterprise Linux, is optional. As well, it
did not come with a corresponding manual page. With this update, the file
has been moved to /usr/share/doc/brltty-3.7.2/BrailleDrivers/Papenmeier/.
This directory also includes a README document that explains the file's
purpose and format. (BZ#530554)

* during the brltty packages installation, the message

Creating screen inspection device /dev/vcsa...done.

was presented at the console. This was inadequate, especially during the
initial install of the system. These updated packages do not send any
message to the console during installation. (BZ#529163)

* although brltty contains ELF objects, the brltty-debuginfo package was
empty. With this update, the -debuginfo package contains valid debugging
information as expected. (BZ#500545)

* the MAX_NR_CONSOLES definition was acquired by brltty by #including
linux/tty.h in Programs/api_client.c. MAX_NR_CONSOLES has since moved to
linux/vt.h but the #include in api_client.c was not updated. Consequently,
brltty could not be built from the source RPM against the Red Hat
Enterprise Linux 5 kernel. This update corrects the #include in
api_client.c to linux/vt.h and brltty now builds from source as expected.
(BZ#456247)

All brltty users are advised to upgrade to these updated packages, which
resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-3279.html">CVE-2008-3279</cve>
                <bugzilla href="http://bugzilla.redhat.com/456247" id="456247">brltty doesn't build with kernel 2.6.18-92.1.1</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/457942" id="457942">CVE-2008-3279 brltty: insecure relative RPATH</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/500545" id="500545">brltty-debuginfo is empty</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/529163" id="529163">Creating screen inspection device /dev/vcsa...done.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530554" id="530554">Missing man-pages</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100181002" comment="brltty is earlier than 0:3.7.2-4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100181003" comment="brltty is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100181004" comment="brlapi is earlier than 0:0.4.1-4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100181005" comment="brlapi is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100181006" comment="brlapi-devel is earlier than 0:0.4.1-4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100181007" comment="brlapi-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100198" version="505" class="patch">
      <metadata>
        <title>RHSA-2010:0198: openldap security and bug fix update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0198-04" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0198.html" />
          <reference source="CVE" ref_id="CVE-2009-3767" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3767.html" />
    
    <description>OpenLDAP is an open source suite of LDAP (Lightweight Directory Access
Protocol) applications and development tools.

A flaw was found in the way OpenLDAP handled NUL characters in the
CommonName field of X.509 certificates. An attacker able to get a
carefully-crafted certificate signed by a trusted Certificate Authority
could trick applications using OpenLDAP libraries into accepting it by
mistake, allowing the attacker to perform a man-in-the-middle attack.
(CVE-2009-3767)

This update also fixes the following bugs:

* the ldap init script did not provide a way to alter system limits for the
slapd daemon. A variable is now available in "/etc/sysconfig/ldap" for this
option. (BZ#527313)

* applications that use the OpenLDAP libraries to contact a Microsoft
Active Directory server could crash when a large number of network
interfaces existed. This update implements locks in the OpenLDAP library
code to resolve this issue. (BZ#510522)

* when slapd was configured to allow client certificates, approximately 90%
of connections froze because of a large CA certificate file and slapd not
checking the success of the SSL handshake. (BZ#509230)

* the OpenLDAP server would freeze for unknown reasons under high load.
These packages add support for accepting incoming connections by new
threads, resolving the issue. (BZ#507276)

* the compat-openldap libraries did not list dependencies on other
libraries, causing programs that did not specifically specify the libraries
to fail. Detection of the Application Binary Interface (ABI) in use on
64-bit systems has been added with this update. (BZ#503734)

* the OpenLDAP libraries caused applications to crash due to an unprocessed
network timeout. A timeval of -1 is now passed when NULL is passed to LDAP.
(BZ#495701)

* slapd could crash on a server under heavy load when using rwm overlay,
caused by freeing non-allocated memory during operation cleanup.
(BZ#495628)

* the ldap init script made a temporary script in "/tmp/" and attempted to
execute it. Problems arose when "/tmp/" was mounted with the noexec option.
The temporary script is no longer created. (BZ#483356)

* the ldap init script always started slapd listening on ldap:/// even if
instructed to listen only on ldaps:///. By correcting the init script, a
user can now select which ports slapd should listen on. (BZ#481003)

* the slapd manual page did not mention the supported options -V and -o.
(BZ#468206)

* slapd.conf had a commented-out option to load the syncprov.la module.
Once un-commented, slapd crashed at start-up because the module had already
been statically linked to OpenLDAP. This update removes "moduleload
syncprov.la" from slapd.conf, which resolves this issue. (BZ#466937)

* the migrate_automount.pl script produced output that was unsupported by
autofs. This is corrected by updating the output LDIF format for automount
records. (BZ#460331)

* the ldap init script uses the TERM signal followed by the KILL signal
when shutting down slapd. Minimal delay between the two signals could cause
the LDAP database to become corrupted if it had not finished saving its
state. A delay between the signals has been added via the "STOP_DELAY"
option in "/etc/sysconfig/ldap". (BZ#452064)

* the migrate_passwd.pl migration script had a problem when number fields
contained only a zero. Such fields were considered to be empty, leading to
the attribute not being set in the LDIF output. The condition in
dump_shadow_attributes has been corrected to allow for the attributes to
contain only a zero. (BZ#113857)

* the migrate_base.pl migration script did not handle third level domains
correctly, creating a second level domain that could not be held by a
database with a three level base. This is now allowed by modifying the
migrate_base.pl script to generate only one domain. (BZ#104585)

Users of OpenLDAP should upgrade to these updated packages, which resolve
these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3767.html">CVE-2009-3767</cve>
                <bugzilla href="http://bugzilla.redhat.com/104585" id="104585">migrate_base.pl broken with dc=X,dc=Y,dc=Z configuration</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/113857" id="113857">migrate_passwd.pl problems with '0' fields</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/460331" id="460331">openldap-server's migrate_automount.pl produces obsolete output</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/466937" id="466937">moduleload syncprov.la not found</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/468206" id="468206">slapd and slapcat : man pages details</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/481003" id="481003">Wrong init script : slapd always starts with option "ldap:///"</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/483356" id="483356">/etc/init.d/ldap script assumes files in /tmp can be executed</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495701" id="495701">LDAP queries fail entirely on a (temporarily) slow server</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/503734" id="503734">64bit shared libs in compat-openldap do not link to other libs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/509230" id="509230">ldaps fails if TLSVerifyClient=allow unless slapd is run with -d2</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/510522" id="510522">LDAP causes crashes when attempting to authenticate with Active Directory</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530715" id="530715">CVE-2009-3767 OpenLDAP: Doesn't properly handle NULL character in subject Common Name</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559520" id="559520">openldap cannot start when kerberos is enable, found by PES</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/562714" id="562714">openldap init script does not handle listen uris properly</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100198010" comment="openldap-devel is earlier than 0:2.3.43-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198011" comment="openldap-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100198004" comment="openldap-clients is earlier than 0:2.3.43-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198005" comment="openldap-clients is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100198006" comment="openldap-servers-sql is earlier than 0:2.3.43-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198007" comment="openldap-servers-sql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100198014" comment="compat-openldap is earlier than 0:2.3.43_2.2.29-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198015" comment="compat-openldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100198002" comment="openldap is earlier than 0:2.3.43-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198003" comment="openldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100198008" comment="openldap-servers is earlier than 0:2.3.43-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198009" comment="openldap-servers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100198012" comment="openldap-servers-overlays is earlier than 0:2.3.43-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198013" comment="openldap-servers-overlays is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100221" version="505" class="patch">
      <metadata>
        <title>RHSA-2010:0221: squid security and bug fix update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0221-04" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0221.html" />
          <reference source="CVE" ref_id="CVE-2009-2855" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2855.html" />
          <reference source="CVE" ref_id="CVE-2010-0308" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0308.html" />
    
    <description>Squid is a high-performance proxy caching server for web clients,
supporting FTP, Gopher, and HTTP data objects.

A flaw was found in the way Squid processed certain external ACL helper
HTTP header fields that contained a delimiter that was not a comma. A
remote attacker could issue a crafted request to the Squid server, causing
excessive CPU use (up to 100%). (CVE-2009-2855)

Note: The CVE-2009-2855 issue only affected non-default configurations that
use an external ACL helper script.

A flaw was found in the way Squid handled truncated DNS replies. A remote
attacker able to send specially-crafted UDP packets to Squid's DNS client
port could trigger an assertion failure in Squid's child process, causing
that child process to exit. (CVE-2010-0308)

This update also fixes the following bugs:

* Squid's init script returns a non-zero value when trying to stop a
stopped service. This is not LSB compliant and can generate difficulties in
cluster environments. This update makes stopping LSB compliant. (BZ#521926)

* Squid is not currently built to support MAC address filtering in ACLs.
This update includes support for MAC address filtering. (BZ#496170)

* Squid is not currently built to support Kerberos negotiate
authentication. This update enables Kerberos authentication. (BZ#516245)

* Squid does not include the port number as part of URIs it constructs when
configured as an accelerator. This results in a 403 error. This update
corrects this behavior. (BZ#538738)

* the error_map feature does not work if the same handling is set also on
the HTTP server that operates in deflate mode. This update fixes this
issue. (BZ#470843)

All users of squid should upgrade to this updated package, which resolves
these issues. After installing this update, the squid service will be
restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2855.html">CVE-2009-2855</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0308.html">CVE-2010-0308</cve>
                <bugzilla href="http://bugzilla.redhat.com/496170" id="496170">Add arp filter option</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/516245" id="516245">negotiate support not enabled in squid (for kerberized sso)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/518182" id="518182">CVE-2009-2855 squid: DoS (100% CPU use) while processing certain external ACL helper HTTP headers</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521926" id="521926">squid 'stop after stop' is not LSB compliant</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/538738" id="538738">Squid accelerator mode works only if port 80 is opened</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/556389" id="556389">CVE-2010-0308 squid: temporary DoS (assertion failure) triggered by truncated DNS packet (SQUID-2010:1)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100221002" comment="squid is earlier than 7:2.6.STABLE21-6.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100221003" comment="squid is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100237" version="506" class="patch">
      <metadata>
        <title>RHSA-2010:0237: sendmail security and bug fix update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0237-05" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0237.html" />
          <reference source="CVE" ref_id="CVE-2006-7176" ref_url="https://www.redhat.com/security/data/cve/CVE-2006-7176.html" />
          <reference source="CVE" ref_id="CVE-2009-4565" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4565.html" />
    
    <description>Sendmail is a very widely used Mail Transport Agent (MTA). MTAs deliver
mail from one machine to another. Sendmail is not a client program, but
rather a behind-the-scenes daemon that moves email over networks or the
Internet to its final destination.

The configuration of sendmail in Red Hat Enterprise Linux was found to not
reject the "localhost.localdomain" domain name for email messages that come
from external hosts. This could allow remote attackers to disguise spoofed
messages. (CVE-2006-7176)

A flaw was found in the way sendmail handled NUL characters in the
CommonName field of X.509 certificates. An attacker able to get a
carefully-crafted certificate signed by a trusted Certificate Authority
could trick sendmail into accepting it by mistake, allowing the attacker to
perform a man-in-the-middle attack or bypass intended client certificate
authentication. (CVE-2009-4565)

Note: The CVE-2009-4565 issue only affected configurations using TLS with
certificate verification and CommonName checking enabled, which is not a
typical configuration.

This update also fixes the following bugs:

* sendmail was unable to parse files specified by the ServiceSwitchFile
option which used a colon as a separator. (BZ#512871)

* sendmail incorrectly returned a zero exit code when free space was low.
(BZ#299951)

* the sendmail manual page had a blank space between the -qG option and
parameter. (BZ#250552)

* the comments in the sendmail.mc file specified the wrong path to SSL
certificates. (BZ#244012)

* the sendmail packages did not provide the MTA capability. (BZ#494408)

All users of sendmail are advised to upgrade to these updated packages,
which resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2006-7176.html">CVE-2006-7176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4565.html">CVE-2009-4565</cve>
                <bugzilla href="http://bugzilla.redhat.com/238540" id="238540">CVE-2006-7176 sendmail allows external mail with from address xxx@localhost.localdomain</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/244012" id="244012">Old path to openssl used in sendmail.mc</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/250552" id="250552">the description about option '-qG name' should be modified in the manpage</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/440616" id="440616">there should be %{?dist} instead of %{dist} in the *.spec on the Release: line</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/449391" id="449391">sendmail allows external mail with from address xxx@localhost.localdomain</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/494408" id="494408">Sendmail should provide "MTA"</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552622" id="552622">CVE-2009-4565 sendmail: incorrect verification of SSL certificate with NUL in name</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100237002" comment="sendmail is earlier than 0:8.13.8-8.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100237003" comment="sendmail is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100237004" comment="sendmail-doc is earlier than 0:8.13.8-8.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100237005" comment="sendmail-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100237008" comment="sendmail-devel is earlier than 0:8.13.8-8.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100237009" comment="sendmail-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100237006" comment="sendmail-cf is earlier than 0:8.13.8-8.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100237007" comment="sendmail-cf is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100258" version="505" class="patch">
      <metadata>
        <title>RHSA-2010:0258: pam_krb5 security and bug fix update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0258-04" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0258.html" />
          <reference source="CVE" ref_id="CVE-2009-1384" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1384.html" />
    
    <description>The pam_krb5 module allows Pluggable Authentication Modules (PAM) aware
applications to use Kerberos to verify user identities by obtaining user
credentials at log in time.

A flaw was found in pam_krb5. In some non-default configurations
(specifically, those where pam_krb5 would be the first module to prompt for
a password), the text of the password prompt varied based on whether or not
the username provided was a username known to the system. A remote attacker
could use this flaw to recognize valid usernames, which would aid a
dictionary-based password guess attack. (CVE-2009-1384)

This update also fixes the following bugs:

* certain applications which do not properly implement PAM conversations
may fail to authenticate users whose passwords have expired and must be
changed, or may succeed without forcing the user's password to be changed.
This bug is triggered by a previously-applied fix to pam_krb5 which makes
it comply more closely to PAM specifications. If an application misbehaves,
enabling the "chpw_prompt" option for its service should restore the old
behavior. (BZ#509092)

* pam_krb5 does not allow the user to change an expired password in cases
where the Key Distribution Center (KDC) is configured to refuse attempts to
obtain forwardable password-changing credentials. This update fixes this
issue. (BZ#489015)

* failure to verify TGT because of wrong keytab handling. (BZ#450776)

Users of pam_krb5 are advised to upgrade to these updated packages, which
resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1384.html">CVE-2009-1384</cve>
                <bugzilla href="http://bugzilla.redhat.com/450776" id="450776">Failed to verify TGT cause of wrong keytab handling</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/489015" id="489015">pam_krb5 cannot offer to change expired password</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/502602" id="502602">CVE-2009-1384 pam_krb5: Password prompt varies for existent and non-existent users</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/505265" id="505265">CVE-2009-1384 RHEL-5's pam_krb5: Password prompt varies for existent and non-existent users</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/509092" id="509092">pam_krb5 update breaks graphical apps (gnome and kde)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100258002" comment="pam_krb5 is earlier than 0:2.2.14-15" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100258003" comment="pam_krb5 is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100271" version="506" class="patch">
      <metadata>
        <title>RHSA-2010:0271: kvm security, bug fix and enhancement update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0271-05" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0271.html" />
          <reference source="CVE" ref_id="CVE-2010-0430" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0430.html" />
          <reference source="CVE" ref_id="CVE-2010-0741" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0741.html" />
    
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. KVM is a Linux kernel module built for
the standard Red Hat Enterprise Linux kernel.

A flaw was found in the way QEMU-KVM handled erroneous data provided by
the Linux virtio-net driver, used by guest operating systems. Due to a
deficiency in the TSO (TCP segment offloading) implementation, a guest's
virtio-net driver would transmit improper data to a certain QEMU-KVM
process on the host, causing the guest to crash. A remote attacker could
use this flaw to send specially-crafted data to a target guest system,
causing that guest to crash. (CVE-2010-0741)

Additionally, these updated packages include numerous bug fixes and
enhancements. Refer to the KVM chapter of the Red Hat Enterprise Linux 5.5
Technical Notes for details:

http://www.redhat.com/docs/en-US/Red_Hat_Enterprise_Linux/5.5/html/Technical_Notes/kvm.html       

All KVM users should upgrade to these updated packages, which resolve this
issue as well as fixing the bugs and adding the enhancements noted in the
Technical Notes. Note: The procedure in the Solution section must be
performed before this update will take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0430.html">CVE-2010-0430</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0741.html">CVE-2010-0741</cve>
                <bugzilla href="http://bugzilla.redhat.com/508040" id="508040">Windows XP not using all CPUS</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/510706" id="510706">qemu-kvm segfault when using i82551 vnic</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/511072" id="511072">KVM - qemu-img fail to copy a RAW format image over FCP storage</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512672" id="512672">Remove initrd warning message</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515549" id="515549">upstream qemu issues on rhel 5.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515655" id="515655">Add result test to prevent Infinite loop in raw_pread, reading too large offset</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515749" id="515749">Remove warnings from kvm compilation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/516545" id="516545">qemu-kvm crashed when setting 32bitwin28k with 64G ram</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/516672" id="516672">Disable unused/unsupported features on qemu-kvm</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/516762" id="516762">qemu aborted when restart 32bitwin23k with more than 4G mem in intel host.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517223" id="517223">BUG: warning at /builddir/build/BUILD/kvm-83-maint-snapshot-20090205/kernel-/x86/x86.c:240/kvm_queue_exception_e() (Tainted: G     )</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/518090" id="518090">[RFE] KVM should be able to export advanced cpu flags to the guest</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/518169" id="518169">Bad qcow2 performance with cache=off</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/519397" id="519397">KVM: MMU: make __kvm_mmu_free_some_pages handle empty list (upstream backport)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/520285" id="520285">windows 64 bit does vmexit on each cr8 access.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521025" id="521025">rtc-td-hack stopped working. Time drifts in windows</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521749" id="521749">Guest Window2008-R2-datacenter installation is stopped at  step "Setup will continue after restarting your computer" (AMD host only)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/521835" id="521835">German keymap using KVM+VNC missing some keys</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/522887" id="522887">Call to migrate_set_speed after a migrate_cancel causes segmentation fault in kvm</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/524970" id="524970">Guest single-cpu IPI leads to a global IPI on host</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/525323" id="525323">QEMU terminates without warning with virtio-net and SMP enabled</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/525699" id="525699">x86_64 guest hang when set guest's cpu1 online on AMD host</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526124" id="526124">ne model failed to get ip address</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526837" id="526837">KVM: x86: verify MTRR/PAT validity (upstream backport)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/527722" id="527722">Build tree for RHEL 5.X and RHEL 5.4.z contains build bugs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/528310" id="528310">when kvm is load, Kernel panic on rebooting after implement suspend and resume</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/529694" id="529694">-initrd is broken with > 4GB guests</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530134" id="530134">RFE - In-place backing file format change</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/530533" id="530533">debug message is displayed when save VM state into a compressed file</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531631" id="531631">Windows XP unattended install doesn't get an IP address after rebooting, if using -net user</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531701" id="531701">pvclock msr values are not preserved across remote migration</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531827" id="531827">O/S Filesystem Corruption with RHEL-5.4 on a RHEV Guest</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/532086" id="532086">Rhev-Block driver causes  'unhandled vm exit' with 32bit win2k3r2sp2 Guest VM  on restart</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533059" id="533059">kvm modules can't be built against latest kernel-devel package</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533197" id="533197">kvm kmod package should filter only some specific ksym dependencies</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533390" id="533390">RHEL5.4 VM image corruption with an IDE v-disk</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/533453" id="533453">kvm kmod package should require a compatible kernel version</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537075" id="537075">qcow2: infinite recursion on grow_refcount_table() error handling</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537077" id="537077">error codes aren't always propagated up through the block layer (e.g. -ENOSPC)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537646" id="537646">backports of qemu barrier support</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537655" id="537655">qemu-img: error creating a new preallocated volume image on FCP storage</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/537888" id="537888">fix unsafe device data handling</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/539250" id="539250">Cannot eject cd-rom when configured to host cd-rom</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/539589" id="539589">kvm can't build against kernel-2.6.18-174.el5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/540893" id="540893">qemu-img: snapshot info error</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/541084" id="541084">KVM: x86: Add KVM_GET/SET_VCPU_EVENTS</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/541731" id="541731">kvm: migration: mechanism to make older savevm versions to be emitted on some cases</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/542923" id="542923">Get segmentation fault when running with ide block on kvm-83-136.el5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/543137" id="543137">time drift in win2k364 KVM guest</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/543979" id="543979">gPXE fails to PXE boot on e1000 virtual NIC</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/545136" id="545136">CVE-2010-0741 whitelist host virtio networking features</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/545194" id="545194">Discrepancy between man page and source code for qcow2 with regards to default value used when no explicit caching is specified</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546019" id="546019">kvm: use gpxe PXE roms if available</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546039" id="546039">[FEAT] Supported KVM guests for RHEL5.5</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549938" id="549938">Maintain barrier state after migration</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/550053" id="550053">require newer etherboot package that is compatible with new pxe ROM paths</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/550265" id="550265">gPXE fails to PXE boot on e1000 virtual NIC</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/550755" id="550755">Hypercall driver doesn't reset device on power-down</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/552487" id="552487">Guest image corruption after RHEV-H update to 5.4-2.1.3.el5_4rhev2_1 using virtio-blk</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/553187" id="553187">Add rhel-5.4.4 support to rhel5.5.0</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/555780" id="555780">iozone test can not finish when using virtio_blk in RHEL5u4 guest.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/557327" id="557327">migration failed with -M rhel5.4.4 between host 5.5 and host 5.4.4</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/558195" id="558195">kvm: NFS : kvm-qemu-img convert failure on RAW/Sparse template with COW/Sparse snapshot</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559163" id="559163">migration failed host 5.5 with -M rhel5.5.0 to host 5.5 with -M rhel5.5.0.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559509" id="559509">KVM:Wake up from hibernation operation failed ( migration to file )</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/563141" id="563141">qemu-img re-base subcommand got Segmentation fault</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/569762" id="569762">'qemu-img re-base' broken on block devices</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/577218" id="577218">CVE-2010-0741 qemu: Improper handling of erroneous data provided by Linux virtio-net driver</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100271004" comment="kvm-qemu-img is earlier than 0:83-164.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088009" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100271002" comment="kvm is earlier than 0:83-164.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088003" comment="kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100271006" comment="kmod-kvm is earlier than 0:83-164.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088007" comment="kmod-kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100271008" comment="kvm-tools is earlier than 0:83-164.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088005" comment="kvm-tools is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100273" version="506" class="patch">
      <metadata>
        <title>RHSA-2010:0273: curl security, bug fix and enhancement update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0273-05" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0273.html" />
          <reference source="CVE" ref_id="CVE-2010-0734" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0734.html" />
    
    <description>cURL is a tool for getting files from FTP, HTTP, Gopher, Telnet, and DICT
servers, using any of the supported protocols. cURL is designed to work
without user interaction or any kind of interactivity.

Wesley Miaw discovered that when deflate compression was used, libcurl
could call the registered write callback function with data exceeding the
documented limit. A malicious server could use this flaw to crash an
application using libcurl or, potentially, execute arbitrary code. Note:
This issue only affected applications using libcurl that rely on the
documented data size limit, and that copy the data to the insufficiently
sized buffer. (CVE-2010-0734)

This update also fixes the following bugs:

* when using curl to upload a file, if the connection was broken or reset
by the server during the transfer, curl immediately started using 100% CPU
and failed to acknowledge that the transfer had failed. With this update,
curl displays an appropriate error message and exits when an upload fails
mid-transfer due to a broken or reset connection. (BZ#479967)

* libcurl experienced a segmentation fault when attempting to reuse a
connection after performing GSS-negotiate authentication, which in turn
caused the curl program to crash. This update fixes this bug so that reused
connections are able to be successfully established even after
GSS-negotiate authentication has been performed. (BZ#517199)

As well, this update adds the following enhancements:

* curl now supports loading Certificate Revocation Lists (CRLs) from a
Privacy Enhanced Mail (PEM) file. When curl attempts to access sites that
have had their certificate revoked in a CRL, curl refuses access to those
sites. (BZ#532069)

* the curl(1) manual page has been updated to clarify that the "--socks4"
and "--socks5" options do not work with the IPv6, FTPS, or LDAP protocols.
(BZ#473128)

* the curl utility's program help, which is accessed by running "curl -h",
has been updated with descriptions for the "--ftp-account" and
"--ftp-alternative-to-user" options. (BZ#517084)

Users of curl should upgrade to these updated packages, which contain
backported patches to correct these issues and add these enhancements. All
running applications using libcurl must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0734.html">CVE-2010-0734</cve>
                <bugzilla href="http://bugzilla.redhat.com/479967" id="479967">curl uses 100% of CPU if upload connection is broken</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517084" id="517084">curl program options differ from option in manual page</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517199" id="517199">curl, libcurl crash when reusing connection after negotiate-auth</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/563220" id="563220">CVE-2010-0734 curl: zlib-compression causes curl to pass more than CURL_MAX_WRITE_SIZE bytes to write callback</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100273002" comment="curl is earlier than 0:7.15.5-9.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100273003" comment="curl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100273004" comment="curl-devel is earlier than 0:7.15.5-9.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100273005" comment="curl-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100291" version="505" class="patch">
      <metadata>
        <title>RHSA-2010:0291: gfs-kmod security, bug fix and enhancement update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0291-04" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0291.html" />
          <reference source="CVE" ref_id="CVE-2010-0727" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0727.html" />
    
    <description>The gfs-kmod packages contain modules that provide the ability to mount and
use GFS file systems.

A flaw was found in the gfs_lock() implementation. The GFS locking code
could skip the lock operation for files that have the S_ISGID bit
(set-group-ID on execution) in their mode set. A local, unprivileged user
on a system that has a GFS file system mounted could use this flaw to cause
a kernel panic. (CVE-2010-0727)

These updated gfs-kmod packages are in sync with the latest kernel
(2.6.18-194.el5). The modules in earlier gfs-kmod packages failed to load
because they did not match the running kernel. It was possible to
force-load the modules. With this update, however, users no longer need to.

These updated gfs-kmod packages also fix the following bugs:

* when SELinux was in permissive mode, a race condition during file
creation could have caused one or more cluster nodes to be fenced and lock
the remaining nodes out of the GFS file system. This race condition no
longer occurs with this update. (BZ#471258)

* when ACLs (Access Control Lists) are enabled on a GFS file system, if a
transaction that has started to do a write request does not have enough
spare blocks for the operation it causes a kernel panic. This update
ensures that there are enough blocks for the write request before starting
the operation. (BZ#513885)

* requesting a "flock" on a file in GFS in either read-only or read-write
mode would sometimes cause a "Resource temporarily unavailable" state error
(error 11 for EWOULDBLOCK) to occur. In these cases, a flock could not be
obtained on the file in question. This has been fixed with this update so
that flocks can successfully be obtained on GFS files without this error
occurring. (BZ#515717)

* the GFS withdraw function is a data integrity feature of GFS file systems
in a cluster. If the GFS kernel module detects an inconsistency in a GFS
file system following an I/O operation, the file system becomes unavailable
to the cluster. The GFS withdraw function is less severe than a kernel
panic, which would cause another node to fence the node. With this update,
you can override the GFS withdraw function by mounting the file system with
the "-o errors=panic" option specified. When this option is specified, any
errors that would normally cause the system to withdraw cause the system to
panic instead. This stops the node's cluster communications, which causes
the node to be fenced. (BZ#517145)

Finally, these updated gfs-kmod packages provide the following enhancement:

* the GFS kernel modules have been updated to use the new generic freeze
and unfreeze ioctl interface that is also supported by the following file
systems: ext3, ext4, GFS2, JFS and ReiserFS. With this update, GFS supports
freeze/unfreeze through the VFS-level FIFREEZE/FITHAW ioctl interface.
(BZ#487610)

Users are advised to upgrade to these latest gfs-kmod packages, updated for
use with the 2.6.18-194.el5 kernel, which contain backported patches to
correct these issues, fix these bugs, and add this enhancement.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0727.html">CVE-2010-0727</cve>
                <bugzilla href="http://bugzilla.redhat.com/471258" id="471258">fatal: assertion "gfs_glock_is_locked_by_me(gl) &amp;&amp; gfs_glock_is_held_excl(gl)" failed</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/487610" id="487610">GFS: Change gfs freeze/unfreeze to use new standard</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/513885" id="513885">GFS kernel panic, suid + nfsd with posix ACLs enabled</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/515717" id="515717">Flock on GFS fs file will error with "Resource tempory unavailable" for EWOULDBLOCK</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/517145" id="517145">[RFE] GFS: New mount option: -o errors=withdraw|panic</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/570863" id="570863">CVE-2010-0727 kernel: bug in GFS/GFS2 locking code leads to dos</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_cluster_storage</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100291004" comment="kmod-gfs is earlier than 0:0.1.34-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100291005" comment="kmod-gfs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100291008" comment="kmod-gfs-PAE is earlier than 0:0.1.34-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100291009" comment="kmod-gfs-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100291006" comment="kmod-gfs-xen is earlier than 0:0.1.34-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100291007" comment="kmod-gfs-xen is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100291002" comment="gfs-kmod is earlier than 0:0.1.34-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100291003" comment="gfs-kmod is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100321" version="505" class="patch">
      <metadata>
        <title>RHSA-2010:0321: automake security update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0321-04" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0321.html" />
          <reference source="CVE" ref_id="CVE-2009-4029" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4029.html" />
    
    <description>Automake is a tool for automatically generating Makefile.in files compliant
with the GNU Coding Standards.

Automake-generated Makefiles made certain directories world-writable when
preparing source archives, as was recommended by the GNU Coding Standards.
If a malicious, local user could access the directory where a victim was
creating distribution archives, they could use this flaw to modify the
files being added to those archives. Makefiles generated by these updated
automake packages no longer make distribution directories world-writable,
as recommended by the updated GNU Coding Standards. (CVE-2009-4029)

Note: This issue affected Makefile targets used by developers to prepare
distribution source archives. Those targets are not used when compiling
programs from the source code.

All users of automake, automake14, automake15, automake16, and automake17
should upgrade to these updated packages, which resolve this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4029.html">CVE-2009-4029</cve>
                <bugzilla href="http://bugzilla.redhat.com/542609" id="542609">CVE-2009-4029 Automake: Race condition by creation of "distdir" based directory hierarchy</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100321002" comment="automake14 is earlier than 0:1.4p6-13.el5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100321003" comment="automake14 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100321004" comment="automake15 is earlier than 0:1.5-16.el5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100321005" comment="automake15 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100321006" comment="automake16 is earlier than 0:1.6.3-8.el5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100321007" comment="automake16 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100321008" comment="automake17 is earlier than 0:1.7.9-7.el5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100321009" comment="automake17 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100321010" comment="automake is earlier than 0:1.9.6-2.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100321011" comment="automake is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100329" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0329: curl security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0329-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0329.html" />
          <reference source="CVE" ref_id="CVE-2010-0734" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0734.html" />
    
    <description>cURL is a tool for getting files from FTP, HTTP, Gopher, Telnet, and DICT
servers, using any of the supported protocols. cURL is designed to work
without user interaction or any kind of interactivity.

Wesley Miaw discovered that when deflate compression was used, libcurl
could call the registered write callback function with data exceeding the
documented limit. A malicious server could use this flaw to crash an
application using libcurl or, potentially, execute arbitrary code. Note:
This issue only affected applications using libcurl that rely on the
documented data size limit, and that copy the data to the insufficiently
sized buffer. (CVE-2010-0734)

Users of curl should upgrade to these updated packages, which contain a
backported patch to correct this issue. All running applications using
libcurl must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0734.html">CVE-2010-0734</cve>
                <bugzilla href="http://bugzilla.redhat.com/563220" id="563220">CVE-2010-0734 curl: zlib-compression causes curl to pass more than CURL_MAX_WRITE_SIZE bytes to write callback</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100329002" comment="curl is earlier than 0:7.10.6-11.rhel3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100329003" comment="curl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100329004" comment="curl-devel is earlier than 0:7.10.6-11.rhel3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100329005" comment="curl-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100329007" comment="curl is earlier than 0:7.12.1-11.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100329003" comment="curl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100329008" comment="curl-devel is earlier than 0:7.12.1-11.1.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100329005" comment="curl-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100332" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0332: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0332-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0332.html" />
          <reference source="CVE" ref_id="CVE-2010-0174" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0174.html" />
          <reference source="CVE" ref_id="CVE-2010-0175" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0175.html" />
          <reference source="CVE" ref_id="CVE-2010-0176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0176.html" />
          <reference source="CVE" ref_id="CVE-2010-0177" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0177.html" />
          <reference source="CVE" ref_id="CVE-2010-0178" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0178.html" />
          <reference source="CVE" ref_id="CVE-2010-0179" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0179.html" />
    
    <description>Mozilla Firefox is an open source Web browser. XULRunner provides the XUL
Runtime environment for Mozilla Firefox.

Several use-after-free flaws were found in Firefox. Visiting a web page
containing malicious content could result in Firefox executing arbitrary
code with the privileges of the user running Firefox. (CVE-2010-0175,
CVE-2010-0176, CVE-2010-0177)

A flaw was found in Firefox that could allow an applet to generate a drag
and drop action from a mouse click. Such an action could be used to execute
arbitrary JavaScript with the privileges of the user running Firefox.
(CVE-2010-0178)

A privilege escalation flaw was found in Firefox when the Firebug add-on is
in use. The XMLHttpRequestSpy module in the Firebug add-on exposes a Chrome
privilege escalation flaw that could be used to execute arbitrary
JavaScript with the privileges of the user running Firefox. (CVE-2010-0179)

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-0174)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.0.19. You can find a link to the Mozilla
advisories in the References section of this erratum.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.0.19, which corrects these issues. After installing the
update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0174.html">CVE-2010-0174</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0175.html">CVE-2010-0175</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0176.html">CVE-2010-0176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0177.html">CVE-2010-0177</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0178.html">CVE-2010-0178</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0179.html">CVE-2010-0179</cve>
                <bugzilla href="http://bugzilla.redhat.com/578147" id="578147">CVE-2010-0174 Mozilla crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578149" id="578149">CVE-2010-0175 Mozilla remote code execution with use-after-free in nsTreeSelection</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578150" id="578150">CVE-2010-0176 Mozilla Dangling pointer vulnerability in nsTreeContentView</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578152" id="578152">CVE-2010-0177 Mozilla Dangling pointer vulnerability in nsPluginArray</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578154" id="578154">CVE-2010-0178 Firefox Chrome privilege escalation via forced URL drag and drop</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578155" id="578155">CVE-2010-0179 Firefox Arbitrary code execution with Firebug XMLHttpRequestSpy</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100332006" comment="xulrunner-devel-unstable is earlier than 0:1.9.0.19-1.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112007" comment="xulrunner-devel-unstable is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100332002" comment="xulrunner is earlier than 0:1.9.0.19-1.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100332004" comment="xulrunner-devel is earlier than 0:1.9.0.19-1.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100332008" comment="firefox is earlier than 0:3.0.19-1.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112009" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100332011" comment="firefox is earlier than 0:3.0.19-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100333" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0333: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0333-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0333.html" />
          <reference source="CVE" ref_id="CVE-2010-0174" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0174.html" />
          <reference source="CVE" ref_id="CVE-2010-0175" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0175.html" />
          <reference source="CVE" ref_id="CVE-2010-0176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0176.html" />
          <reference source="CVE" ref_id="CVE-2010-0177" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0177.html" />
    
    <description>SeaMonkey is an open source Web browser, email and newsgroup client, IRC
chat client, and HTML editor.

Several use-after-free flaws were found in SeaMonkey. Visiting a web page
containing malicious content could result in SeaMonkey executing arbitrary
code with the privileges of the user running SeaMonkey. (CVE-2010-0175,
CVE-2010-0176, CVE-2010-0177)

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause SeaMonkey to crash or,
potentially, execute arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2010-0174)

All SeaMonkey users should upgrade to these updated packages, which correct
these issues. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-30" />
        <updated date="2010-03-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0174.html">CVE-2010-0174</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0175.html">CVE-2010-0175</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0176.html">CVE-2010-0176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0177.html">CVE-2010-0177</cve>
                <bugzilla href="http://bugzilla.redhat.com/578147" id="578147">CVE-2010-0174 Mozilla crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578149" id="578149">CVE-2010-0175 Mozilla remote code execution with use-after-free in nsTreeSelection</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578150" id="578150">CVE-2010-0176 Mozilla Dangling pointer vulnerability in nsTreeContentView</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578152" id="578152">CVE-2010-0177 Mozilla Dangling pointer vulnerability in nsPluginArray</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333010" comment="seamonkey-nspr is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113013" comment="seamonkey-nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333016" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333006" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113019" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333020" comment="seamonkey-mail is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333002" comment="seamonkey is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333018" comment="seamonkey-devel is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333014" comment="seamonkey-nss is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113005" comment="seamonkey-nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333012" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113011" comment="seamonkey-nss-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333004" comment="seamonkey-chat is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333008" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.52.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333024" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-54.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333027" comment="seamonkey-mail is earlier than 0:1.0.9-54.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333023" comment="seamonkey is earlier than 0:1.0.9-54.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333026" comment="seamonkey-devel is earlier than 0:1.0.9-54.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333028" comment="seamonkey-chat is earlier than 0:1.0.9-54.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100333025" comment="seamonkey-js-debugger is earlier than 0:1.0.9-54.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100337" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0337: java-1.6.0-sun security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0337-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0337.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-0082" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0082.html" />
          <reference source="CVE" ref_id="CVE-2010-0084" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0084.html" />
          <reference source="CVE" ref_id="CVE-2010-0085" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0085.html" />
          <reference source="CVE" ref_id="CVE-2010-0087" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0087.html" />
          <reference source="CVE" ref_id="CVE-2010-0088" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0088.html" />
          <reference source="CVE" ref_id="CVE-2010-0089" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0089.html" />
          <reference source="CVE" ref_id="CVE-2010-0090" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0090.html" />
          <reference source="CVE" ref_id="CVE-2010-0091" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0091.html" />
          <reference source="CVE" ref_id="CVE-2010-0092" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0092.html" />
          <reference source="CVE" ref_id="CVE-2010-0093" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0093.html" />
          <reference source="CVE" ref_id="CVE-2010-0094" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0094.html" />
          <reference source="CVE" ref_id="CVE-2010-0095" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0095.html" />
          <reference source="CVE" ref_id="CVE-2010-0837" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0837.html" />
          <reference source="CVE" ref_id="CVE-2010-0838" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0838.html" />
          <reference source="CVE" ref_id="CVE-2010-0839" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0839.html" />
          <reference source="CVE" ref_id="CVE-2010-0840" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0840.html" />
          <reference source="CVE" ref_id="CVE-2010-0841" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0841.html" />
          <reference source="CVE" ref_id="CVE-2010-0842" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0842.html" />
          <reference source="CVE" ref_id="CVE-2010-0843" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0843.html" />
          <reference source="CVE" ref_id="CVE-2010-0844" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0844.html" />
          <reference source="CVE" ref_id="CVE-2010-0845" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0845.html" />
          <reference source="CVE" ref_id="CVE-2010-0846" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0846.html" />
          <reference source="CVE" ref_id="CVE-2010-0847" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0847.html" />
          <reference source="CVE" ref_id="CVE-2010-0848" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0848.html" />
          <reference source="CVE" ref_id="CVE-2010-0849" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0849.html" />
    
    <description>The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and
the Sun Java 6 Software Development Kit.

This update fixes several vulnerabilities in the Sun Java 6 Runtime
Environment and the Sun Java 6 Software Development Kit. Further
information about these flaws can be found on the "Oracle Java SE and Java
for Business Critical Patch Update Advisory" page, listed in the
References section. (CVE-2009-3555, CVE-2010-0082, CVE-2010-0084,
CVE-2010-0085, CVE-2010-0087, CVE-2010-0088, CVE-2010-0089, CVE-2010-0090,
CVE-2010-0091, CVE-2010-0092, CVE-2010-0093, CVE-2010-0094, CVE-2010-0095,
CVE-2010-0837, CVE-2010-0838, CVE-2010-0839, CVE-2010-0840, CVE-2010-0841,
CVE-2010-0842, CVE-2010-0843, CVE-2010-0844, CVE-2010-0845, CVE-2010-0846,
CVE-2010-0847, CVE-2010-0848, CVE-2010-0849)

For the CVE-2009-3555 issue, this update disables renegotiation in the Java
Secure Socket Extension (JSSE) component. Unsafe renegotiation can be
re-enabled using the sun.security.ssl.allowUnsafeRenegotiation property.
Refer to the following Knowledgebase article for details:
http://kbase.redhat.com/faq/docs/DOC-20491

Users of java-1.6.0-sun should upgrade to these updated packages, which
correct these issues. All running instances of Sun Java must be restarted
for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-31" />
        <updated date="2010-03-31" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0082.html">CVE-2010-0082</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0084.html">CVE-2010-0084</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0085.html">CVE-2010-0085</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0087.html">CVE-2010-0087</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0088.html">CVE-2010-0088</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0089.html">CVE-2010-0089</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0090.html">CVE-2010-0090</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0091.html">CVE-2010-0091</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0092.html">CVE-2010-0092</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0093.html">CVE-2010-0093</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0094.html">CVE-2010-0094</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0095.html">CVE-2010-0095</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0837.html">CVE-2010-0837</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0838.html">CVE-2010-0838</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0839.html">CVE-2010-0839</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0840.html">CVE-2010-0840</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0841.html">CVE-2010-0841</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0842.html">CVE-2010-0842</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0843.html">CVE-2010-0843</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0844.html">CVE-2010-0844</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0845.html">CVE-2010-0845</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0846.html">CVE-2010-0846</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0847.html">CVE-2010-0847</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0848.html">CVE-2010-0848</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0849.html">CVE-2010-0849</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575736" id="575736">CVE-2010-0082 OpenJDK Loader-constraint table allows arrays instead of only the base-classes (6626217)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575740" id="575740">CVE-2010-0084 OpenJDK Policy/PolicyFile leak dynamic ProtectionDomains. (6633872)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575747" id="575747">CVE-2010-0085 OpenJDK File TOCTOU deserialization vulnerability (6736390)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575755" id="575755">CVE-2010-0088 OpenJDK Inflater/Deflater clone issues (6745393)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575756" id="575756">CVE-2010-0091 OpenJDK Unsigned applet can retrieve the dragged information before drop action occurs(6887703)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575760" id="575760">CVE-2010-0092 OpenJDK AtomicReferenceArray causes SIGSEGV -> SEGV_MAPERR error (6888149)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575764" id="575764">CVE-2010-0093 OpenJDK System.arraycopy unable to reference elements beyond Integer.MAX_VALUE bytes (6892265)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575769" id="575769">CVE-2010-0094 OpenJDK Deserialization of RMIConnectionImpl objects should enforce stricter checks (6893947)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575772" id="575772">CVE-2010-0095 OpenJDK Subclasses of InetAddress may incorrectly interpret network addresses (6893954)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575775" id="575775">CVE-2010-0845 OpenJDK  No ClassCastException for HashAttributeSet constructors if run with -Xcomp (6894807)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575808" id="575808">CVE-2010-0838 OpenJDK CMM readMabCurveData Buffer Overflow Vulnerability (6899653)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575818" id="575818">CVE-2010-0837 OpenJDK JAR "unpack200" must verify input parameters (6902299)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575846" id="575846">CVE-2010-0840 OpenJDK Applet Trusted Methods Chaining Privilege Escalation Vulnerability (6904691)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575854" id="575854">CVE-2010-0841 OpenJDK JPEGImageReader stepX Integer Overflow Vulnerability (6909597)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575865" id="575865">CVE-2010-0848 OpenJDK AWT Library Invalid Index Vulnerability (6914823)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575871" id="575871">CVE-2010-0847 OpenJDK ImagingLib arbitrary code execution vulnerability (6914866)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578430" id="578430">CVE-2010-0846 JDK unspecified vulnerability in ImageIO component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578432" id="578432">CVE-2010-0849 JDK unspecified vulnerability in Java2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578433" id="578433">CVE-2010-0087 JDK unspecified vulnerability in JWS/Plugin component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578436" id="578436">CVE-2010-0839 CVE-2010-0842 CVE-2010-0843 CVE-2010-0844 JDK multiple unspecified vulnerabilities</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578437" id="578437">CVE-2010-0090 JDK unspecified vulnerability in JavaWS/Plugin component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578440" id="578440">CVE-2010-0089 JDK unspecified vulnerability in JavaWS/Plugin component</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100337010" comment="java-1.6.0-sun-jdbc is earlier than 1:1.6.0.19-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337011" comment="java-1.6.0-sun-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100337002" comment="java-1.6.0-sun is earlier than 1:1.6.0.19-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337003" comment="java-1.6.0-sun is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100337004" comment="java-1.6.0-sun-demo is earlier than 1:1.6.0.19-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337005" comment="java-1.6.0-sun-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100337012" comment="java-1.6.0-sun-plugin is earlier than 1:1.6.0.19-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337013" comment="java-1.6.0-sun-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100337008" comment="java-1.6.0-sun-src is earlier than 1:1.6.0.19-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337009" comment="java-1.6.0-sun-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100337006" comment="java-1.6.0-sun-devel is earlier than 1:1.6.0.19-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337007" comment="java-1.6.0-sun-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100338" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0338: java-1.5.0-sun security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0338-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0338.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-0082" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0082.html" />
          <reference source="CVE" ref_id="CVE-2010-0084" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0084.html" />
          <reference source="CVE" ref_id="CVE-2010-0085" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0085.html" />
          <reference source="CVE" ref_id="CVE-2010-0087" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0087.html" />
          <reference source="CVE" ref_id="CVE-2010-0088" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0088.html" />
          <reference source="CVE" ref_id="CVE-2010-0089" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0089.html" />
          <reference source="CVE" ref_id="CVE-2010-0091" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0091.html" />
          <reference source="CVE" ref_id="CVE-2010-0092" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0092.html" />
          <reference source="CVE" ref_id="CVE-2010-0093" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0093.html" />
          <reference source="CVE" ref_id="CVE-2010-0094" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0094.html" />
          <reference source="CVE" ref_id="CVE-2010-0095" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0095.html" />
          <reference source="CVE" ref_id="CVE-2010-0837" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0837.html" />
          <reference source="CVE" ref_id="CVE-2010-0838" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0838.html" />
          <reference source="CVE" ref_id="CVE-2010-0839" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0839.html" />
          <reference source="CVE" ref_id="CVE-2010-0840" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0840.html" />
          <reference source="CVE" ref_id="CVE-2010-0841" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0841.html" />
          <reference source="CVE" ref_id="CVE-2010-0842" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0842.html" />
          <reference source="CVE" ref_id="CVE-2010-0843" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0843.html" />
          <reference source="CVE" ref_id="CVE-2010-0844" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0844.html" />
          <reference source="CVE" ref_id="CVE-2010-0845" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0845.html" />
          <reference source="CVE" ref_id="CVE-2010-0846" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0846.html" />
          <reference source="CVE" ref_id="CVE-2010-0847" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0847.html" />
          <reference source="CVE" ref_id="CVE-2010-0848" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0848.html" />
          <reference source="CVE" ref_id="CVE-2010-0849" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0849.html" />
    
    <description>The Sun 1.5.0 Java release includes the Sun Java 5 Runtime Environment and
the Sun Java 5 Software Development Kit.

The java-1.5.0-sun packages are vulnerable to a number of security flaws
and should no longer be used. (CVE-2009-3555, CVE-2010-0082, CVE-2010-0084,
CVE-2010-0085, CVE-2010-0087, CVE-2010-0088, CVE-2010-0089, CVE-2010-0091,
CVE-2010-0092, CVE-2010-0093, CVE-2010-0094, CVE-2010-0095, CVE-2010-0837,
CVE-2010-0838, CVE-2010-0839, CVE-2010-0840, CVE-2010-0841, CVE-2010-0842,
CVE-2010-0843, CVE-2010-0844, CVE-2010-0845, CVE-2010-0846, CVE-2010-0847,
CVE-2010-0848, CVE-2010-0849)

The Sun Java SE Release family 5.0 reached its End of Service Life on
November 3, 2009. The RHSA-2009:1571 update provided the final publicly
available update of version 5.0 (Update 22). Users interested in continuing
to receive critical fixes for Sun Java SE 5.0 should contact Oracle:

http://www.sun.com/software/javaforbusiness/index.jsp

An alternative to Sun Java SE 5.0 is the Java 2 Technology Edition of the
IBM Developer Kit for Linux, which is available from the Extras and
Supplementary channels on the Red Hat Network.

Applications capable of using the Java 6 runtime can be migrated to Java 6
on: OpenJDK (java-1.6.0-openjdk), an open source JDK included in Red Hat
Enterprise Linux 5, since 5.3; the IBM JDK, java-1.6.0-ibm; or the Sun JDK,
java-1.6.0-sun.

This update removes the java-1.5.0-sun packages as they have reached their
End of Service Life.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-31" />
        <updated date="2010-03-31" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0082.html">CVE-2010-0082</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0084.html">CVE-2010-0084</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0085.html">CVE-2010-0085</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0087.html">CVE-2010-0087</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0088.html">CVE-2010-0088</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0089.html">CVE-2010-0089</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0091.html">CVE-2010-0091</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0092.html">CVE-2010-0092</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0093.html">CVE-2010-0093</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0094.html">CVE-2010-0094</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0095.html">CVE-2010-0095</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0837.html">CVE-2010-0837</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0838.html">CVE-2010-0838</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0839.html">CVE-2010-0839</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0840.html">CVE-2010-0840</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0841.html">CVE-2010-0841</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0842.html">CVE-2010-0842</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0843.html">CVE-2010-0843</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0844.html">CVE-2010-0844</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0845.html">CVE-2010-0845</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0846.html">CVE-2010-0846</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0847.html">CVE-2010-0847</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0848.html">CVE-2010-0848</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0849.html">CVE-2010-0849</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575736" id="575736">CVE-2010-0082 OpenJDK Loader-constraint table allows arrays instead of only the base-classes (6626217)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575740" id="575740">CVE-2010-0084 OpenJDK Policy/PolicyFile leak dynamic ProtectionDomains. (6633872)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575747" id="575747">CVE-2010-0085 OpenJDK File TOCTOU deserialization vulnerability (6736390)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575755" id="575755">CVE-2010-0088 OpenJDK Inflater/Deflater clone issues (6745393)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575756" id="575756">CVE-2010-0091 OpenJDK Unsigned applet can retrieve the dragged information before drop action occurs(6887703)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575760" id="575760">CVE-2010-0092 OpenJDK AtomicReferenceArray causes SIGSEGV -> SEGV_MAPERR error (6888149)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575764" id="575764">CVE-2010-0093 OpenJDK System.arraycopy unable to reference elements beyond Integer.MAX_VALUE bytes (6892265)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575769" id="575769">CVE-2010-0094 OpenJDK Deserialization of RMIConnectionImpl objects should enforce stricter checks (6893947)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575772" id="575772">CVE-2010-0095 OpenJDK Subclasses of InetAddress may incorrectly interpret network addresses (6893954)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575775" id="575775">CVE-2010-0845 OpenJDK  No ClassCastException for HashAttributeSet constructors if run with -Xcomp (6894807)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575808" id="575808">CVE-2010-0838 OpenJDK CMM readMabCurveData Buffer Overflow Vulnerability (6899653)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575818" id="575818">CVE-2010-0837 OpenJDK JAR "unpack200" must verify input parameters (6902299)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575846" id="575846">CVE-2010-0840 OpenJDK Applet Trusted Methods Chaining Privilege Escalation Vulnerability (6904691)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575854" id="575854">CVE-2010-0841 OpenJDK JPEGImageReader stepX Integer Overflow Vulnerability (6909597)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575865" id="575865">CVE-2010-0848 OpenJDK AWT Library Invalid Index Vulnerability (6914823)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575871" id="575871">CVE-2010-0847 OpenJDK ImagingLib arbitrary code execution vulnerability (6914866)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578430" id="578430">CVE-2010-0846 JDK unspecified vulnerability in ImageIO component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578432" id="578432">CVE-2010-0849 JDK unspecified vulnerability in Java2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578433" id="578433">CVE-2010-0087 JDK unspecified vulnerability in JWS/Plugin component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578436" id="578436">CVE-2010-0839 CVE-2010-0842 CVE-2010-0843 CVE-2010-0844 JDK multiple unspecified vulnerabilities</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578440" id="578440">CVE-2010-0089 JDK unspecified vulnerability in JavaWS/Plugin component</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100338004" comment="java-1.5.0-sun-uninstall is earlier than 0:1.5.0.22-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100338005" comment="java-1.5.0-sun-uninstall is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100338002" comment="java-1.5.0-sun is earlier than 0:1.5.0.22-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100338003" comment="java-1.5.0-sun is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100339" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0339: java-1.6.0-openjdk security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0339-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0339.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-0082" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0082.html" />
          <reference source="CVE" ref_id="CVE-2010-0084" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0084.html" />
          <reference source="CVE" ref_id="CVE-2010-0085" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0085.html" />
          <reference source="CVE" ref_id="CVE-2010-0088" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0088.html" />
          <reference source="CVE" ref_id="CVE-2010-0091" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0091.html" />
          <reference source="CVE" ref_id="CVE-2010-0092" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0092.html" />
          <reference source="CVE" ref_id="CVE-2010-0093" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0093.html" />
          <reference source="CVE" ref_id="CVE-2010-0094" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0094.html" />
          <reference source="CVE" ref_id="CVE-2010-0095" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0095.html" />
          <reference source="CVE" ref_id="CVE-2010-0837" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0837.html" />
          <reference source="CVE" ref_id="CVE-2010-0838" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0838.html" />
          <reference source="CVE" ref_id="CVE-2010-0840" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0840.html" />
          <reference source="CVE" ref_id="CVE-2010-0845" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0845.html" />
          <reference source="CVE" ref_id="CVE-2010-0847" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0847.html" />
          <reference source="CVE" ref_id="CVE-2010-0848" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0848.html" />
    
    <description>These packages provide the OpenJDK 6 Java Runtime Environment and the
OpenJDK 6 Software Development Kit. The Java Runtime Environment (JRE)
contains the software and tools that users need to run applications written
using the Java programming language.

A flaw was found in the way the TLS/SSL (Transport Layer Security/Secure
Sockets Layer) protocols handle session renegotiation. A man-in-the-middle
attacker could use this flaw to prefix arbitrary plain text to a client's
session (for example, an HTTPS connection to a website). This could force
the server to process an attacker's request as if authenticated using the
victim's credentials. (CVE-2009-3555)

This update disables renegotiation in the Java Secure Socket Extension
(JSSE) component. Unsafe renegotiation can be re-enabled using the
sun.security.ssl.allowUnsafeRenegotiation property. Refer to the following
Knowledgebase article for details:
http://kbase.redhat.com/faq/docs/DOC-20491

A number of flaws have been fixed in the Java Virtual Machine (JVM) and in
various Java class implementations. These flaws could allow an unsigned
applet or application to bypass intended access restrictions.
(CVE-2010-0082, CVE-2010-0084, CVE-2010-0085, CVE-2010-0088, CVE-2010-0094)

An untrusted applet could access clipboard information if a drag operation
was performed over that applet's canvas. This could lead to an information
leak. (CVE-2010-0091)

The rawIndex operation incorrectly handled large values, causing the
corruption of internal memory structures, resulting in an untrusted applet
or application crashing. (CVE-2010-0092)

The System.arraycopy operation incorrectly handled large index values,
potentially causing array corruption in an untrusted applet or application.
(CVE-2010-0093)

Subclasses of InetAddress may incorrectly interpret network addresses,
allowing an untrusted applet or application to bypass network access
restrictions. (CVE-2010-0095)

In certain cases, type assignments could result in "non-exact" interface
types. This could be used to bypass type-safety restrictions.
(CVE-2010-0845)

A buffer overflow flaw in LittleCMS (embedded in OpenJDK) could cause an
untrusted applet or application using color profiles from untrusted sources
to crash. (CVE-2010-0838)

An input validation flaw was found in the JRE unpack200 functionality. An
untrusted applet or application could use this flaw to elevate its
privileges. (CVE-2010-0837)

Deferred calls to trusted applet methods could be granted incorrect
permissions, allowing an untrusted applet or application to extend its
privileges. (CVE-2010-0840)

A missing input validation flaw in the JRE could allow an attacker to crash
an untrusted applet or application. (CVE-2010-0848)

A flaw in Java2D could allow an attacker to execute arbitrary code with the
privileges of a user running an untrusted applet or application that uses
Java2D. (CVE-2010-0847)

Note: The flaws concerning applets in this advisory, CVE-2010-0082,
CVE-2010-0084, CVE-2010-0085, CVE-2010-0088, CVE-2010-0091, CVE-2010-0092,
CVE-2010-0093, CVE-2010-0094, CVE-2010-0095, CVE-2010-0837, CVE-2010-0838,
CVE-2010-0840, CVE-2010-0847, and CVE-2010-0848, can only be triggered in
java-1.6.0-openjdk by calling the "appletviewer" application.

This update also provides three defense in depth patches. (BZ#575745,
BZ#575861, BZ#575789)

All users of java-1.6.0-openjdk are advised to upgrade to these updated
packages, which resolve these issues. All running instances of OpenJDK Java
must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-03-31" />
        <updated date="2010-03-31" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0082.html">CVE-2010-0082</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0084.html">CVE-2010-0084</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0085.html">CVE-2010-0085</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0088.html">CVE-2010-0088</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0091.html">CVE-2010-0091</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0092.html">CVE-2010-0092</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0093.html">CVE-2010-0093</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0094.html">CVE-2010-0094</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0095.html">CVE-2010-0095</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0837.html">CVE-2010-0837</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0838.html">CVE-2010-0838</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0840.html">CVE-2010-0840</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0845.html">CVE-2010-0845</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0847.html">CVE-2010-0847</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0848.html">CVE-2010-0848</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575736" id="575736">CVE-2010-0082 OpenJDK Loader-constraint table allows arrays instead of only the base-classes (6626217)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575740" id="575740">CVE-2010-0084 OpenJDK Policy/PolicyFile leak dynamic ProtectionDomains. (6633872)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575745" id="575745">OpenJDK ThreadGroup finalizer allows creation of false root ThreadGroups (6639665)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575747" id="575747">CVE-2010-0085 OpenJDK File TOCTOU deserialization vulnerability (6736390)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575755" id="575755">CVE-2010-0088 OpenJDK Inflater/Deflater clone issues (6745393)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575756" id="575756">CVE-2010-0091 OpenJDK Unsigned applet can retrieve the dragged information before drop action occurs(6887703)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575760" id="575760">CVE-2010-0092 OpenJDK AtomicReferenceArray causes SIGSEGV -> SEGV_MAPERR error (6888149)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575764" id="575764">CVE-2010-0093 OpenJDK System.arraycopy unable to reference elements beyond Integer.MAX_VALUE bytes (6892265)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575769" id="575769">CVE-2010-0094 OpenJDK Deserialization of RMIConnectionImpl objects should enforce stricter checks (6893947)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575772" id="575772">CVE-2010-0095 OpenJDK Subclasses of InetAddress may incorrectly interpret network addresses (6893954)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575775" id="575775">CVE-2010-0845 OpenJDK  No ClassCastException for HashAttributeSet constructors if run with -Xcomp (6894807)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575789" id="575789">OpenJDK ObjectIdentifer.equals is not capable of detecting incorrectly encoded CommonName OIDs (6898622)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575808" id="575808">CVE-2010-0838 OpenJDK CMM readMabCurveData Buffer Overflow Vulnerability (6899653)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575818" id="575818">CVE-2010-0837 OpenJDK JAR "unpack200" must verify input parameters (6902299)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575846" id="575846">CVE-2010-0840 OpenJDK Applet Trusted Methods Chaining Privilege Escalation Vulnerability (6904691)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575861" id="575861">OpenJDK Application can modify command array in ProcessBuilder (6910590)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575865" id="575865">CVE-2010-0848 OpenJDK AWT Library Invalid Index Vulnerability (6914823)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575871" id="575871">CVE-2010-0847 OpenJDK ImagingLib arbitrary code execution vulnerability (6914866)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100339002" comment="java-1.6.0-openjdk is earlier than 1:1.6.0.0-1.11.b16.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339003" comment="java-1.6.0-openjdk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100339010" comment="java-1.6.0-openjdk-src is earlier than 1:1.6.0.0-1.11.b16.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339011" comment="java-1.6.0-openjdk-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100339006" comment="java-1.6.0-openjdk-demo is earlier than 1:1.6.0.0-1.11.b16.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339007" comment="java-1.6.0-openjdk-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100339008" comment="java-1.6.0-openjdk-devel is earlier than 1:1.6.0.0-1.11.b16.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339009" comment="java-1.6.0-openjdk-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100339004" comment="java-1.6.0-openjdk-javadoc is earlier than 1:1.6.0.0-1.11.b16.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339005" comment="java-1.6.0-openjdk-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100343" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0343: krb5 security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0343-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0343.html" />
          <reference source="CVE" ref_id="CVE-2010-0629" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0629.html" />
    
    <description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other using symmetric encryption and a
trusted third party, the Key Distribution Center (KDC).

A use-after-free flaw was discovered in the MIT Kerberos administration
daemon, kadmind. A remote, authenticated attacker could use this flaw to
crash the kadmind daemon. Administrative privileges are not required to
trigger this flaw, as any realm user can request information about their
own principal from kadmind. (CVE-2010-0629)

This update also fixes the following bug:

* when a Kerberos client seeks tickets for use with a service, it must
contact the Key Distribution Center (KDC) to obtain them. The client must
also determine which realm the service belongs to and it typically does
this with a combination of client configuration detail, DNS information and
guesswork.

If the service belongs to a realm other than the client's, cross-realm
authentication is required. Using a combination of client configuration and
guesswork, the client determines the trust relationship sequence which
forms the trusted path between the client's realm and the service's realm.
This may include one or more intermediate realms.

Anticipating the KDC has better knowledge of extant trust relationships,
the client then requests a ticket from the service's KDC, indicating it
will accept guidance from the service's KDC by setting a special flag in
the request. A KDC which recognizes the flag can, at its option, return a
ticket-granting ticket for the next realm along the trust path the client
should be following.

If the ticket-granting ticket returned by the service's KDC is for use with
a realm the client has already determined was in the trusted path, the
client accepts this as an optimization and continues. If, however, the
ticket is for use in a realm the client is not expecting, the client
responds incorrectly: it treats the case as an error rather than continuing
along the path suggested by the service's KDC.

For this update, the krb5 1.7 modifications which allow the client to trust
such KDCs to send them along the correct path, resulting in the client
obtaining the tickets it originally desired, were backported to krb 1.6.1
(the version shipped with Red Hat Enterprise Linux 5.5). (BZ#578540)

All krb5 users should upgrade to these updated packages, which contain
backported patches to correct these issues. All running KDC services must
be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-06" />
        <updated date="2010-04-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0629.html">CVE-2010-0629</cve>
                <bugzilla href="http://bugzilla.redhat.com/576011" id="576011">CVE-2010-0629 krb5: kadmind use-after-free remote crash (MITKRB5-SA-2010-003)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578540" id="578540">[RFE] Backport referral-chasing code within krb5-1.7 to RHEL5</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100343010" comment="krb5-libs is earlier than 0:1.6.1-36.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029007" comment="krb5-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100343006" comment="krb5-devel is earlier than 0:1.6.1-36.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029005" comment="krb5-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100343008" comment="krb5-server is earlier than 0:1.6.1-36.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029011" comment="krb5-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100343002" comment="krb5 is earlier than 0:1.6.1-36.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029003" comment="krb5 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100343004" comment="krb5-workstation is earlier than 0:1.6.1-36.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029009" comment="krb5-workstation is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100347" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0347: nss_db security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0347-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0347.html" />
          <reference source="CVE" ref_id="CVE-2010-0826" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0826.html" />
    
    <description>The nss_db packages provide a set of C library extensions which allow
Berkeley Database (Berkeley DB) databases to be used as a primary source of
aliases, ethers, groups, hosts, networks, protocols, users, RPCs, services,
and shadow passwords. These databases are used instead of or in addition to
the flat files used by these tools by default.

It was discovered that nss_db did not specify a path to the directory to be
used as the database environment for the Berkeley Database library, causing
it to use the current working directory as the default. This could possibly
allow a local attacker to obtain sensitive information. (CVE-2010-0826)

Users of nss_db are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-13" />
        <updated date="2010-04-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0826.html">CVE-2010-0826</cve>
                <bugzilla href="http://bugzilla.redhat.com/580187" id="580187">CVE-2010-0826 nss_db: Information leak due the DB_CONFIG file read from current working directory</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100347002" comment="nss_db is earlier than 0:2.2-35.4.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100347003" comment="nss_db is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100348" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0348: kdebase security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0348-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0348.html" />
          <reference source="CVE" ref_id="CVE-2010-0436" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0436.html" />
    
    <description>The K Desktop Environment (KDE) is a graphical desktop environment for the
X Window System. The kdebase packages include core applications for KDE.

A privilege escalation flaw was found in the KDE Display Manager (KDM). A
local user with console access could trigger a race condition, possibly
resulting in the permissions of an arbitrary file being set to world
writable, allowing privilege escalation. (CVE-2010-0436)

Red Hat would like to thank Sebastian Krahmer of the SuSE Security Team for
responsibly reporting this issue.

Users of KDE should upgrade to these updated packages, which contain a
backported patch to correct this issue. The system should be rebooted for
this update to take effect. After the reboot, administrators should
manually remove all leftover user-owned dmctl-* directories in
"/var/run/xdmctl/".</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-14" />
        <updated date="2010-04-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0436.html">CVE-2010-0436</cve>
                <bugzilla href="http://bugzilla.redhat.com/570613" id="570613">CVE-2010-0436 kdm privilege escalation flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100348002" comment="kdebase is earlier than 6:3.5.4-21.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100348003" comment="kdebase is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100348004" comment="kdebase-devel is earlier than 6:3.5.4-21.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100348005" comment="kdebase-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100348007" comment="kdebase is earlier than 6:3.3.1-13.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100348008" comment="kdebase is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100348009" comment="kdebase-devel is earlier than 6:3.3.1-13.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100348010" comment="kdebase-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100349" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0349: acroread security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0349-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0349.html" />
          <reference source="CVE" ref_id="CVE-2010-0190" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0190.html" />
          <reference source="CVE" ref_id="CVE-2010-0191" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0191.html" />
          <reference source="CVE" ref_id="CVE-2010-0192" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0192.html" />
          <reference source="CVE" ref_id="CVE-2010-0193" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0193.html" />
          <reference source="CVE" ref_id="CVE-2010-0194" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0194.html" />
          <reference source="CVE" ref_id="CVE-2010-0195" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0195.html" />
          <reference source="CVE" ref_id="CVE-2010-0196" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0196.html" />
          <reference source="CVE" ref_id="CVE-2010-0197" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0197.html" />
          <reference source="CVE" ref_id="CVE-2010-0198" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0198.html" />
          <reference source="CVE" ref_id="CVE-2010-0199" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0199.html" />
          <reference source="CVE" ref_id="CVE-2010-0201" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0201.html" />
          <reference source="CVE" ref_id="CVE-2010-0202" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0202.html" />
          <reference source="CVE" ref_id="CVE-2010-0203" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0203.html" />
          <reference source="CVE" ref_id="CVE-2010-0204" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0204.html" />
          <reference source="CVE" ref_id="CVE-2010-1241" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1241.html" />
    
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes several vulnerabilities in Adobe Reader. These
vulnerabilities are summarized on the Adobe Security Advisory APSB10-09
page listed in the References section. A specially-crafted PDF file could
cause Adobe Reader to crash or, potentially, execute arbitrary code as the
user running Adobe Reader when opened. (CVE-2010-0190, CVE-2010-0191,
CVE-2010-0192, CVE-2010-0193, CVE-2010-0194, CVE-2010-0195, CVE-2010-0196,
CVE-2010-0197, CVE-2010-0198, CVE-2010-0199, CVE-2010-0201, CVE-2010-0202,
CVE-2010-0203, CVE-2010-0204, CVE-2010-1241)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 9.3.2, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-14" />
        <updated date="2010-04-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0190.html">CVE-2010-0190</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0191.html">CVE-2010-0191</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0192.html">CVE-2010-0192</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0193.html">CVE-2010-0193</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0194.html">CVE-2010-0194</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0195.html">CVE-2010-0195</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0196.html">CVE-2010-0196</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0197.html">CVE-2010-0197</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0198.html">CVE-2010-0198</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0199.html">CVE-2010-0199</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0201.html">CVE-2010-0201</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0202.html">CVE-2010-0202</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0203.html">CVE-2010-0203</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0204.html">CVE-2010-0204</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1241.html">CVE-2010-1241</cve>
                <bugzilla href="http://bugzilla.redhat.com/579213" id="579213">CVE-2010-1241 Acroread: Heap-based overflow by opening a specially-crafted PDF file (FG-VD-10-005)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/581417" id="581417">Acroread: Multiple code execution flaws (APSB10-09)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100349004" comment="acroread-plugin is earlier than 0:9.3.2-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100349002" comment="acroread is earlier than 0:9.3.2-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100356" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0356: java-1.6.0-sun security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0356-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0356.html" />
          <reference source="CVE" ref_id="CVE-2010-0886" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0886.html" />
          <reference source="CVE" ref_id="CVE-2010-0887" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0887.html" />
    
    <description>The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and
the Sun Java 6 Software Development Kit.

This update fixes two vulnerabilities in the Sun Java 6 Runtime Environment
and the Sun Java 6 Software Development Kit. Further information about
these flaws can be found on the Oracle Security Alert page listed in the
References section. (CVE-2010-0886, CVE-2010-0887)

Users of java-1.6.0-sun should upgrade to these updated packages, which
correct these issues. All running instances of Sun Java must be restarted
for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-19" />
        <updated date="2010-04-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0886.html">CVE-2010-0886</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0887.html">CVE-2010-0887</cve>
                <bugzilla href="http://bugzilla.redhat.com/581237" id="581237">CVE-2010-0886 CVE-2010-0887 Sun Java: Java Web Start arbitrary command line injection</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100356010" comment="java-1.6.0-sun-jdbc is earlier than 1:1.6.0.20-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337011" comment="java-1.6.0-sun-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100356002" comment="java-1.6.0-sun is earlier than 1:1.6.0.20-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337003" comment="java-1.6.0-sun is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100356008" comment="java-1.6.0-sun-demo is earlier than 1:1.6.0.20-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337005" comment="java-1.6.0-sun-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100356012" comment="java-1.6.0-sun-plugin is earlier than 1:1.6.0.20-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337013" comment="java-1.6.0-sun-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100356006" comment="java-1.6.0-sun-src is earlier than 1:1.6.0.20-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337009" comment="java-1.6.0-sun-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100356004" comment="java-1.6.0-sun-devel is earlier than 1:1.6.0.20-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337007" comment="java-1.6.0-sun-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100360" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0360: wireshark security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0360-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0360.html" />
          <reference source="CVE" ref_id="CVE-2009-2560" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2560.html" />
          <reference source="CVE" ref_id="CVE-2009-2562" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2562.html" />
          <reference source="CVE" ref_id="CVE-2009-2563" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2563.html" />
          <reference source="CVE" ref_id="CVE-2009-3550" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3550.html" />
          <reference source="CVE" ref_id="CVE-2009-3829" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3829.html" />
          <reference source="CVE" ref_id="CVE-2009-4377" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4377.html" />
          <reference source="CVE" ref_id="CVE-2010-0304" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0304.html" />
    
    <description>Wireshark is a program for monitoring network traffic. Wireshark was
previously known as Ethereal.

An invalid pointer dereference flaw was found in the Wireshark SMB and SMB2
dissectors. If Wireshark read a malformed packet off a network or opened a
malicious dump file, it could crash or, possibly, execute arbitrary code as
the user running Wireshark. (CVE-2009-4377)

Several buffer overflow flaws were found in the Wireshark LWRES dissector.
If Wireshark read a malformed packet off a network or opened a malicious
dump file, it could crash or, possibly, execute arbitrary code as the user
running Wireshark. (CVE-2010-0304)

Several denial of service flaws were found in Wireshark. Wireshark could
crash or stop responding if it read a malformed packet off a network, or
opened a malicious dump file. (CVE-2009-2560, CVE-2009-2562, CVE-2009-2563,
CVE-2009-3550, CVE-2009-3829)

Users of Wireshark should upgrade to these updated packages, which contain
Wireshark version 1.0.11, and resolve these issues. All running instances
of Wireshark must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-20" />
        <updated date="2010-04-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2560.html">CVE-2009-2560</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2562.html">CVE-2009-2562</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2563.html">CVE-2009-2563</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3550.html">CVE-2009-3550</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3829.html">CVE-2009-3829</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4377.html">CVE-2009-4377</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0304.html">CVE-2010-0304</cve>
                <bugzilla href="http://bugzilla.redhat.com/512987" id="512987">CVE-2009-2562 Wireshark: Integer overflow in the AFS dissector</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/512992" id="512992">CVE-2009-2563 Wireshark: Null-ptr dereference in the InfiniBand dissector</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/513008" id="513008">CVE-2009-2560 Wireshark: various flaws in a) RADIUS, b) Bluetooth L2CAP, c) MIOP dissectors (DoS)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/531260" id="531260">CVE-2009-3550 Wireshark: NULL pointer dereference in the DCERPC over SMB packet disassembly</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/532479" id="532479">CVE-2009-3829 wireshark: unsigned integer wrap vulnerability in ERF reader (VU#676492)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/549578" id="549578">CVE-2009-4377 wireshark: invalid pointer dereference in SMB/SMB2 dissectors</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559793" id="559793">CVE-2010-0304 wireshark: crash in LWRES dissector</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100360002" comment="wireshark is earlier than 0:1.0.11-1.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360003" comment="wireshark is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100360004" comment="wireshark-gnome is earlier than 0:1.0.11-1.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360005" comment="wireshark-gnome is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100360007" comment="wireshark is earlier than 0:1.0.11-EL3.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360008" comment="wireshark is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100360009" comment="wireshark-gnome is earlier than 0:1.0.11-EL3.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360010" comment="wireshark-gnome is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100360012" comment="wireshark is earlier than 0:1.0.11-1.el4_8.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360008" comment="wireshark is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100360013" comment="wireshark-gnome is earlier than 0:1.0.11-1.el4_8.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360010" comment="wireshark-gnome is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100361" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0361: sudo security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0361-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0361.html" />
          <reference source="CVE" ref_id="CVE-2010-1163" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1163.html" />
    
    <description>The sudo (superuser do) utility allows system administrators to give
certain users the ability to run commands as root.

The RHBA-2010:0212 sudo update released as part of Red Hat Enterprise Linux
5.5 added the ability to change the value of the ignore_dot option in the
"/etc/sudoers" configuration file. This ability introduced a regression in
the upstream fix for CVE-2010-0426. In configurations where the ignore_dot
option was set to off (the default is on for the Red Hat Enterprise Linux 5
sudo package), a local user authorized to use the sudoedit pseudo-command
could possibly run arbitrary commands with the privileges of the users
sudoedit was authorized to run as. (CVE-2010-1163)

Red Hat would like to thank Todd C. Miller, the upstream sudo maintainer,
for responsibly reporting this issue. Upstream acknowledges Valerio
Costamagna as the original reporter.

Users of sudo should upgrade to this updated package, which contains a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-20" />
        <updated date="2010-04-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1163.html">CVE-2010-1163</cve>
                <bugzilla href="http://bugzilla.redhat.com/580441" id="580441">CVE-2010-1163 sudo: incomplete fix for the sudoedit privilege escalation issue CVE-2010-0426</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100361002" comment="sudo is earlier than 0:1.7.2p1-6.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100122003" comment="sudo is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100362" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0362: scsi-target-utils security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0362-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0362.html" />
          <reference source="CVE" ref_id="CVE-2010-0743" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0743.html" />
    
    <description>The scsi-target-utils package contains the daemon and tools to set up and
monitor SCSI targets. Currently, iSCSI software and iSER targets are
supported.

A format string flaw was found in scsi-target-utils' tgtd daemon. A
remote attacker could trigger this flaw by sending a carefully-crafted
Internet Storage Name Service (iSNS) request, causing the tgtd daemon to
crash. (CVE-2010-0743)

All scsi-target-utils users should upgrade to this updated package, which
contains a backported patch to correct this issue. All running
scsi-target-utils services must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-20" />
        <updated date="2010-04-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0743.html">CVE-2010-0743</cve>
                <bugzilla href="http://bugzilla.redhat.com/576359" id="576359">CVE-2010-0743 scsi-target-utils: format string vulnerability</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_cluster_storage</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100362002" comment="scsi-target-utils is earlier than 0:0.0-6.20091205snap.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100362003" comment="scsi-target-utils is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100382" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0382: xorg-x11-server security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0382-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0382.html" />
          <reference source="CVE" ref_id="CVE-2010-1166" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1166.html" />
    
    <description>X.Org is an open source implementation of the X Window System. It provides
the basic low-level functionality that full-fledged graphical user
interfaces are designed upon.

An incorrect calculation flaw was discovered in the X.Org Render extension.
A malicious, authorized client could exploit this issue to crash the X.Org
server or, potentially, execute arbitrary code with root privileges.
(CVE-2010-1166)

Users of xorg-x11-server should upgrade to these updated packages, which
contain a backported patch to resolve this issue. All running X.Org server
instances must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-28" />
        <updated date="2010-04-28" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1166.html">CVE-2010-1166</cve>
                <bugzilla href="http://bugzilla.redhat.com/495733" id="495733">Xorg crashes with latest firefox</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582601" id="582601">CVE-2010-1166 Xorg: X server Render extension memory corruption</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100382014" comment="xorg-x11-server-Xephyr is earlier than 0:1.1.1-48.76.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100382015" comment="xorg-x11-server-Xephyr is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100382012" comment="xorg-x11-server-Xdmx is earlier than 0:1.1.1-48.76.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100382013" comment="xorg-x11-server-Xdmx is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100382004" comment="xorg-x11-server-Xorg is earlier than 0:1.1.1-48.76.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100382005" comment="xorg-x11-server-Xorg is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100382008" comment="xorg-x11-server-Xvnc-source is earlier than 0:1.1.1-48.76.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100382009" comment="xorg-x11-server-Xvnc-source is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100382006" comment="xorg-x11-server-Xvfb is earlier than 0:1.1.1-48.76.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100382007" comment="xorg-x11-server-Xvfb is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100382016" comment="xorg-x11-server-sdk is earlier than 0:1.1.1-48.76.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100382017" comment="xorg-x11-server-sdk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100382002" comment="xorg-x11-server is earlier than 0:1.1.1-48.76.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100382003" comment="xorg-x11-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100382010" comment="xorg-x11-server-Xnest is earlier than 0:1.1.1-48.76.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100382011" comment="xorg-x11-server-Xnest is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100383" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0383: java-1.6.0-ibm security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0383-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0383.html" />
          <reference source="CVE" ref_id="CVE-2010-0084" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0084.html" />
          <reference source="CVE" ref_id="CVE-2010-0085" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0085.html" />
          <reference source="CVE" ref_id="CVE-2010-0087" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0087.html" />
          <reference source="CVE" ref_id="CVE-2010-0088" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0088.html" />
          <reference source="CVE" ref_id="CVE-2010-0089" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0089.html" />
          <reference source="CVE" ref_id="CVE-2010-0090" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0090.html" />
          <reference source="CVE" ref_id="CVE-2010-0091" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0091.html" />
          <reference source="CVE" ref_id="CVE-2010-0092" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0092.html" />
          <reference source="CVE" ref_id="CVE-2010-0094" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0094.html" />
          <reference source="CVE" ref_id="CVE-2010-0095" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0095.html" />
          <reference source="CVE" ref_id="CVE-2010-0837" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0837.html" />
          <reference source="CVE" ref_id="CVE-2010-0838" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0838.html" />
          <reference source="CVE" ref_id="CVE-2010-0839" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0839.html" />
          <reference source="CVE" ref_id="CVE-2010-0840" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0840.html" />
          <reference source="CVE" ref_id="CVE-2010-0841" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0841.html" />
          <reference source="CVE" ref_id="CVE-2010-0842" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0842.html" />
          <reference source="CVE" ref_id="CVE-2010-0843" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0843.html" />
          <reference source="CVE" ref_id="CVE-2010-0844" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0844.html" />
          <reference source="CVE" ref_id="CVE-2010-0846" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0846.html" />
          <reference source="CVE" ref_id="CVE-2010-0847" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0847.html" />
          <reference source="CVE" ref_id="CVE-2010-0848" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0848.html" />
          <reference source="CVE" ref_id="CVE-2010-0849" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0849.html" />
    
    <description>The IBM 1.6.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit. These
vulnerabilities are summarized on the IBM "Security alerts" page listed in
the References section. (CVE-2010-0084, CVE-2010-0085, CVE-2010-0087,
CVE-2010-0088, CVE-2010-0089, CVE-2010-0090, CVE-2010-0091, CVE-2010-0092,
CVE-2010-0094, CVE-2010-0095, CVE-2010-0837, CVE-2010-0838, CVE-2010-0839,
CVE-2010-0840, CVE-2010-0841, CVE-2010-0842, CVE-2010-0843, CVE-2010-0844,
CVE-2010-0846, CVE-2010-0848, CVE-2010-0849)

All users of java-1.6.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.6.0 SR8 Java release. All running instances
of IBM Java must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-04-29" />
        <updated date="2010-04-29" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0084.html">CVE-2010-0084</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0085.html">CVE-2010-0085</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0087.html">CVE-2010-0087</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0088.html">CVE-2010-0088</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0089.html">CVE-2010-0089</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0090.html">CVE-2010-0090</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0091.html">CVE-2010-0091</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0092.html">CVE-2010-0092</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0094.html">CVE-2010-0094</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0095.html">CVE-2010-0095</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0837.html">CVE-2010-0837</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0838.html">CVE-2010-0838</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0839.html">CVE-2010-0839</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0840.html">CVE-2010-0840</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0841.html">CVE-2010-0841</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0842.html">CVE-2010-0842</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0843.html">CVE-2010-0843</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0844.html">CVE-2010-0844</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0846.html">CVE-2010-0846</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0847.html">CVE-2010-0847</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0848.html">CVE-2010-0848</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0849.html">CVE-2010-0849</cve>
                <bugzilla href="http://bugzilla.redhat.com/575740" id="575740">CVE-2010-0084 OpenJDK Policy/PolicyFile leak dynamic ProtectionDomains. (6633872)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575747" id="575747">CVE-2010-0085 OpenJDK File TOCTOU deserialization vulnerability (6736390)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575755" id="575755">CVE-2010-0088 OpenJDK Inflater/Deflater clone issues (6745393)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575756" id="575756">CVE-2010-0091 OpenJDK Unsigned applet can retrieve the dragged information before drop action occurs(6887703)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575760" id="575760">CVE-2010-0092 OpenJDK AtomicReferenceArray causes SIGSEGV -> SEGV_MAPERR error (6888149)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575769" id="575769">CVE-2010-0094 OpenJDK Deserialization of RMIConnectionImpl objects should enforce stricter checks (6893947)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575772" id="575772">CVE-2010-0095 OpenJDK Subclasses of InetAddress may incorrectly interpret network addresses (6893954)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575808" id="575808">CVE-2010-0838 OpenJDK CMM readMabCurveData Buffer Overflow Vulnerability (6899653)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575818" id="575818">CVE-2010-0837 OpenJDK JAR "unpack200" must verify input parameters (6902299)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575846" id="575846">CVE-2010-0840 OpenJDK Applet Trusted Methods Chaining Privilege Escalation Vulnerability (6904691)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575854" id="575854">CVE-2010-0841 OpenJDK JPEGImageReader stepX Integer Overflow Vulnerability (6909597)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575865" id="575865">CVE-2010-0848 OpenJDK AWT Library Invalid Index Vulnerability (6914823)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578430" id="578430">CVE-2010-0846 JDK unspecified vulnerability in ImageIO component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578432" id="578432">CVE-2010-0849 JDK unspecified vulnerability in Java2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578433" id="578433">CVE-2010-0087 JDK unspecified vulnerability in JWS/Plugin component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578436" id="578436">CVE-2010-0839 CVE-2010-0842 CVE-2010-0843 CVE-2010-0844 JDK multiple unspecified vulnerabilities</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578437" id="578437">CVE-2010-0090 JDK unspecified vulnerability in JavaWS/Plugin component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578440" id="578440">CVE-2010-0089 JDK unspecified vulnerability in JavaWS/Plugin component</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100383004" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.8-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383005" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100383002" comment="java-1.6.0-ibm is earlier than 1:1.6.0.8-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383003" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100383012" comment="java-1.6.0-ibm-accessibility is earlier than 1:1.6.0.8-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383013" comment="java-1.6.0-ibm-accessibility is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100383010" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.8-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383011" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100383014" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.8-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383015" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100383006" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.8-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383007" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100383016" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.8-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383017" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100383008" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.8-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383009" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100386" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0386: Red Hat Enterprise Linux 3 - 6-Month End Of Life Notice (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0386-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0386.html" />
    
    <description>In accordance with the Red Hat Enterprise Linux Errata Support Policy, the
regular 7 year life-cycle of Red Hat Enterprise Linux 3 will end on October
31, 2010.

After this date, Red Hat will discontinue the regular subscription services
for Red Hat Enterprise Linux 3. Therefore, new bug fix, enhancement, and
security errata updates, as well as technical support services will no
longer be available for the following products:

* Red Hat Enterprise Linux AS 3
* Red Hat Enterprise Linux ES 3
* Red Hat Enterprise Linux WS 3
* Red Hat Enterprise Linux Extras 3
* Red Hat Desktop 3
* Red Hat Global File System 3
* Red Hat Cluster Suite 3

Customers still running production workloads on Red Hat Enterprise
Linux 3 are advised to begin planning the upgrade to Red Hat Enterprise
Linux 5. Active subscribers of Red Hat Enterprise Linux already have access
to all currently maintained versions of Red Hat Enterprise Linux, as part
of their subscription without additional fees.

For customers who are unable to migrate off Red Hat Enterprise Linux 3
before its end-of-life date, Red Hat may offer a limited, optional
extension program. For more information, contact your Red Hat sales
representative or channel partner.

Details of the Red Hat Enterprise Linux life-cycle can be found on the Red
Hat website: http://www.redhat.com/security/updates/errata/</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-03" />
        <updated date="2010-05-03" />
                <bugzilla href="http://bugzilla.redhat.com/586512" id="586512">Send Out RHEL 3 6-Month EOL Notice</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100386002" comment="redhat-release is earlier than 0:3AS-13.9.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100386004" comment="redhat-release is earlier than 0:3ES-13.9.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100386005" comment="redhat-release is earlier than 0:3WS-13.9.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100386006" comment="redhat-release is earlier than 0:3Desktop-13.9.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100394" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0394: kernel security, bug fix, and enhancement update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0394-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0394.html" />
          <reference source="CVE" ref_id="CVE-2010-0729" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0729.html" />
          <reference source="CVE" ref_id="CVE-2010-1083" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1083.html" />
          <reference source="CVE" ref_id="CVE-2010-1085" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1085.html" />
          <reference source="CVE" ref_id="CVE-2010-1086" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1086.html" />
          <reference source="CVE" ref_id="CVE-2010-1188" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1188.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security fixes:

* RHSA-2009:1024 introduced a flaw in the ptrace implementation on Itanium
systems. ptrace_check_attach() was not called during certain ptrace()
requests. Under certain circumstances, a local, unprivileged user could use
this flaw to call ptrace() on a process they do not own, giving them
control over that process. (CVE-2010-0729, Important)

* a flaw was found in the kernel's Unidirectional Lightweight Encapsulation
(ULE) implementation. A remote attacker could send a specially-crafted ISO
MPEG-2 Transport Stream (TS) frame to a target system, resulting in a
denial of service. (CVE-2010-1086, Important)

* a use-after-free flaw was found in tcp_rcv_state_process() in the
kernel's TCP/IP protocol suite implementation. If a system using IPv6 had
the IPV6_RECVPKTINFO option set on a listening socket, a remote attacker
could send an IPv6 packet to that system, causing a kernel panic.
(CVE-2010-1188, Important)

* a divide-by-zero flaw was found in azx_position_ok() in the Intel High
Definition Audio driver, snd-hda-intel. A local, unprivileged user could
trigger this flaw to cause a denial of service. (CVE-2010-1085, Moderate)

* an information leak flaw was found in the kernel's USB implementation.
Certain USB errors could result in an uninitialized kernel buffer being
sent to user-space. An attacker with physical access to a target system
could use this flaw to cause an information leak. (CVE-2010-1083, Low)

Red Hat would like to thank Ang Way Chuang for reporting CVE-2010-1086.

Bug fixes:

* a regression prevented the Broadcom BCM5761 network device from working
when in the first (top) PCI-E slot of Hewlett-Packard (HP) Z600 systems.
Note: The card worked in the 2nd or 3rd PCI-E slot. (BZ#567205)

* the Xen hypervisor supports 168 GB of RAM for 32-bit guests. The physical
address range was set incorrectly, however, causing 32-bit,
para-virtualized Red Hat Enterprise Linux 4.8 guests to crash when launched
on AMD64 or Intel 64 hosts that have more than 64 GB of RAM. (BZ#574392)

* RHSA-2009:1024 introduced a regression, causing diskdump to fail on
systems with certain adapters using the qla2xxx driver. (BZ#577234)

* a race condition caused TX to stop in a guest using the virtio_net
driver. (BZ#580089)

* on some systems, using the "arp_validate=3" bonding option caused both
links to show as "down" even though the arp_target was responding to ARP
requests sent by the bonding driver. (BZ#580842)

* in some circumstances, when a Red Hat Enterprise Linux client connected
to a re-booted Windows-based NFS server, server-side filehandle-to-inode
mapping changes caused a kernel panic. "bad_inode_ops" handling was changed
to prevent this. Note: filehandle-to-inode mapping changes may still cause
errors, but not panics. (BZ#582908)

* when installing a Red Hat Enterprise Linux 4 guest via PXE, hard-coded
fixed-size scatterlists could conflict with host requests, causing the
guest's kernel to panic. With this update, dynamically allocated
scatterlists are used, resolving this issue. (BZ#582911)

Enhancements:

* kernel support for connlimit. Note: iptables errata update RHBA-2010:0395
is also required for connlimit to work correctly. (BZ#563223)

* support for the Intel architectural performance monitoring subsystem
(arch_perfmon). On supported CPUs, arch_perfmon offers means to mark
performance events and options for configuring and counting these events.
(BZ#582913)

* kernel support for OProfile sampling of Intel microarchitecture (Nehalem)
CPUs. This update alone does not address OProfile support for such CPUs. A
future oprofile package update will allow OProfile to work on Intel Nehalem
CPUs. (BZ#582241)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues and add these enhancements. The system must
be rebooted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-05" />
        <updated date="2010-05-05" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0729.html">CVE-2010-0729</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1083.html">CVE-2010-1083</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1085.html">CVE-2010-1085</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1086.html">CVE-2010-1086</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1188.html">CVE-2010-1188</cve>
                <bugzilla href="http://bugzilla.redhat.com/563223" id="563223">[RFE ] Connlimit kernel module support [rhel-4.9] [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566624" id="566624">CVE-2010-1083 kernel: information leak via userspace USB interface</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/567168" id="567168">CVE-2010-1085 kernel: ALSA: hda-intel: Avoid divide by zero crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/567205" id="567205">RHEL4.8: Broadcom 5761 NIC does not work [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/569237" id="569237">CVE-2010-1086 kernel: dvb-core: DoS bug in ULE decapsulation code</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/572007" id="572007">CVE-2010-0729 kernel: ia64: ptrace: peek_or_poke requests miss ptrace_check_attach()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/574392" id="574392">[RHEL4 Xen]: i386 Guest crash when host has >= 64G RAM [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/577234" id="577234">qla2xxx flash programming changes in 4.8 broke diskdump [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/577711" id="577711">CVE-2010-1188 kernel: ipv6: skb is unexpectedly freed</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580089" id="580089">virtio_net 'eth0' interface in a RHEL 4.8 KVM virtual machine becomes unresponsive due to stopped state [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580842" id="580842">[RHEL 4] bonding option arp_validate=3 does not seem to function properly with vlan tagging [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582241" id="582241">[RHEL 4.7] oprofile doesn't work with Nehalem (kernel support) [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582908" id="582908">RHEL4.8-i686 panic in vfs_getattr64() Bad EIP value. [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582911" id="582911">i386 rhel4.8 kvm guests crashes in virtio during installation [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582913" id="582913">[Intel 4.9] Support arch_perfmon for oprofile (kernel support) [rhel-4.8.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394002" comment="kernel is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394022" comment="kernel-doc is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394004" comment="kernel-devel is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394012" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394020" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394010" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394008" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394014" comment="kernel-xenU is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394006" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394018" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100394016" comment="kernel-smp is earlier than 0:2.6.9-89.0.25.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100398" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0398: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0398-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0398.html" />
          <reference source="CVE" ref_id="CVE-2010-0307" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0307.html" />
          <reference source="CVE" ref_id="CVE-2010-0410" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0410.html" />
          <reference source="CVE" ref_id="CVE-2010-0730" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0730.html" />
          <reference source="CVE" ref_id="CVE-2010-1085" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1085.html" />
          <reference source="CVE" ref_id="CVE-2010-1086" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1086.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* a flaw was found in the Unidirectional Lightweight Encapsulation (ULE)
implementation. A remote attacker could send a specially-crafted ISO
MPEG-2 Transport Stream (TS) frame to a target system, resulting in an
infinite loop (denial of service). (CVE-2010-1086, Important)

* on AMD64 systems, it was discovered that the kernel did not ensure the
ELF interpreter was available before making a call to the SET_PERSONALITY
macro. A local attacker could use this flaw to cause a denial of service by
running a 32-bit application that attempts to execute a 64-bit application.
(CVE-2010-0307, Moderate)

* a flaw was found in the kernel connector implementation. A local,
unprivileged user could trigger this flaw by sending an arbitrary number
of notification requests using specially-crafted netlink messages,
resulting in a denial of service. (CVE-2010-0410, Moderate)

* a flaw was found in the Memory-mapped I/O (MMIO) instruction decoder in
the Xen hypervisor implementation. An unprivileged guest user could use
this flaw to trick the hypervisor into emulating a certain instruction,
which could crash the guest (denial of service). (CVE-2010-0730, Moderate)

* a divide-by-zero flaw was found in the azx_position_ok() function in the
driver for Intel High Definition Audio, snd-hda-intel. A local,
unprivileged user could trigger this flaw to cause a kernel crash (denial
of service). (CVE-2010-1085, Moderate)

This update also fixes the following bugs:

* in some cases, booting a system with the "iommu=on" kernel parameter
resulted in a Xen hypervisor panic. (BZ#580199)

* the fnic driver flushed the Rx queue instead of the Tx queue after
fabric login. This caused crashes in some cases. (BZ#580829)

* "kernel unaligned access" warnings were logged to the dmesg log on some
systems. (BZ#580832)

* the "Northbridge Error, node 1, core: -1 K8 ECC error" error occurred on
some systems using the amd64_edac driver. (BZ#580836)

* in rare circumstances, when using kdump and booting a kernel with
"crashkernel=128M@16M", the kdump kernel did not boot after a crash.
(BZ#580838)

* TLB page table entry flushing was done incorrectly on IBM System z,
possibly causing crashes, subtle data inconsistency, or other issues.
(BZ#580839)

* iSCSI failover times were slower than in Red Hat Enterprise Linux 5.3.
(BZ#580840)

* fixed floating point state corruption after signal. (BZ#580841)

* in certain circumstances, under heavy load, certain network interface
cards using the bnx2 driver and configured to use MSI-X, could stop
processing interrupts and then network connectivity would cease.
(BZ#587799)

* cnic parts resets could cause a deadlock when the bnx2 device was
enslaved in a bonding device and that device had an associated VLAN.
(BZ#581148)

* some BIOS implementations initialized interrupt remapping hardware in a
way the Xen hypervisor implementation did not expect. This could have
caused a system hang during boot. (BZ#581150)

* AMD Magny-Cours systems panicked when booting a 32-bit kernel.
(BZ#580846)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-06" />
        <updated date="2010-05-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0307.html">CVE-2010-0307</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0410.html">CVE-2010-0410</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0730.html">CVE-2010-0730</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1085.html">CVE-2010-1085</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1086.html">CVE-2010-1086</cve>
                <bugzilla href="http://bugzilla.redhat.com/560547" id="560547">CVE-2010-0307 kernel: DoS on x86_64</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/561682" id="561682">CVE-2010-0410 kernel: OOM/crash in drivers/connector</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/567168" id="567168">CVE-2010-1085 kernel: ALSA: hda-intel: Avoid divide by zero crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/569237" id="569237">CVE-2010-1086 kernel: dvb-core: DoS bug in ULE decapsulation code</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/572971" id="572971">CVE-2010-0730 xen: emulator instruction decoding inconsistency</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580199" id="580199">xen: clear ioapic registers on boot [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580829" id="580829">[Cisco 5.6 bug] fnic: flush Tx queue bug fix [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580832" id="580832">kernel unaligned messages from mptsas_firmware_event_work [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580836" id="580836">EDAC driver error on system with bad memory [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580838" id="580838">[5.4]System panic occurred during boot sequence with the server which carries 256GMB physical memory. [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580839" id="580839">kernel: correct TLB flush of page table entries concurrently used by another cpu [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580840" id="580840">REGRESSION: Fix iscsi failover time [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/580841" id="580841">floating point register state corruption after handling SIGSEGV [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/581148" id="581148">Kernel: network: bonding: scheduling while atomic: ifdown-eth/0x00000100/21775 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/581150" id="581150">[Intel 5.6 Virt Bug]  [VT-d] Dom0 booting may hang on Westmere-EP with intremap enabled [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/587799" id="587799">NIC doesn't register packets [rhel-5.5.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398004" comment="kernel-headers is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398002" comment="kernel is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398024" comment="kernel-doc is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398022" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398014" comment="kernel-devel is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398012" comment="kernel-debug is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398016" comment="kernel-kdump is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398010" comment="kernel-xen-devel is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398008" comment="kernel-debug-devel is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398020" comment="kernel-PAE is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398018" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100398006" comment="kernel-xen is earlier than 0:2.6.18-194.3.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100399" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0399: tetex security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0399-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0399.html" />
          <reference source="CVE" ref_id="CVE-2007-5935" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-5935.html" />
          <reference source="CVE" ref_id="CVE-2009-0146" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0146.html" />
          <reference source="CVE" ref_id="CVE-2009-0147" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0147.html" />
          <reference source="CVE" ref_id="CVE-2009-0166" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0166.html" />
          <reference source="CVE" ref_id="CVE-2009-0195" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0195.html" />
          <reference source="CVE" ref_id="CVE-2009-0791" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0791.html" />
          <reference source="CVE" ref_id="CVE-2009-0799" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0799.html" />
          <reference source="CVE" ref_id="CVE-2009-0800" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0800.html" />
          <reference source="CVE" ref_id="CVE-2009-1179" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1179.html" />
          <reference source="CVE" ref_id="CVE-2009-1180" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1180.html" />
          <reference source="CVE" ref_id="CVE-2009-1181" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1181.html" />
          <reference source="CVE" ref_id="CVE-2009-1182" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1182.html" />
          <reference source="CVE" ref_id="CVE-2009-1183" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1183.html" />
          <reference source="CVE" ref_id="CVE-2009-3609" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3609.html" />
          <reference source="CVE" ref_id="CVE-2010-0739" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0739.html" />
          <reference source="CVE" ref_id="CVE-2010-0827" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0827.html" />
          <reference source="CVE" ref_id="CVE-2010-1440" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1440.html" />
    
    <description>teTeX is an implementation of TeX. TeX takes a text file and a set of
formatting commands as input, and creates a typesetter-independent DeVice
Independent (DVI) file as output.

A buffer overflow flaw was found in the way teTeX processed virtual font
files when converting DVI files into PostScript. An attacker could create a
malicious DVI file that would cause the dvips executable to crash or,
potentially, execute arbitrary code. (CVE-2010-0827)

Multiple integer overflow flaws were found in the way teTeX processed
special commands when converting DVI files into PostScript. An attacker
could create a malicious DVI file that would cause the dvips executable to
crash or, potentially, execute arbitrary code. (CVE-2010-0739,
CVE-2010-1440)

A stack-based buffer overflow flaw was found in the way teTeX processed DVI
files containing HyperTeX references with long titles, when converting them
into PostScript. An attacker could create a malicious DVI file that would
cause the dvips executable to crash. (CVE-2007-5935)

teTeX embeds a copy of Xpdf, an open source Portable Document Format (PDF)
file viewer, to allow adding images in PDF format to the generated PDF
documents. The following issues affect Xpdf code:

Multiple integer overflow flaws were found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash or, potentially,
execute arbitrary code with the privileges of the user running pdflatex.
(CVE-2009-0147, CVE-2009-1179)

Multiple integer overflow flaws were found in Xpdf. If a local user
generated a PDF file from a TeX document, referencing a specially-crafted
PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary
code with the privileges of the user running pdflatex. (CVE-2009-0791,
CVE-2009-3609)

A heap-based buffer overflow flaw was found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash or, potentially,
execute arbitrary code with the privileges of the user running pdflatex.
(CVE-2009-0195)

Multiple buffer overflow flaws were found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash or, potentially,
execute arbitrary code with the privileges of the user running pdflatex.
(CVE-2009-0146, CVE-2009-1182)

Multiple flaws were found in Xpdf's JBIG2 decoder that could lead to the
freeing of arbitrary memory. If a local user generated a PDF file from a
TeX document, referencing a specially-crafted PDF file, it would cause
Xpdf to crash or, potentially, execute arbitrary code with the privileges
of the user running pdflatex. (CVE-2009-0166, CVE-2009-1180)

Multiple input validation flaws were found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash or, potentially,
execute arbitrary code with the privileges of the user running pdflatex.
(CVE-2009-0800)

Multiple denial of service flaws were found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash. (CVE-2009-0799,
CVE-2009-1181, CVE-2009-1183)

Red Hat would like to thank Braden Thomas and Drew Yao of the Apple Product
Security team, Will Dormann of the CERT/CC, and Alin Rad Pop of Secunia
Research, for responsibly reporting the Xpdf flaws.

All users of tetex are advised to upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-06" />
        <updated date="2010-05-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-5935.html">CVE-2007-5935</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0146.html">CVE-2009-0146</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0147.html">CVE-2009-0147</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0166.html">CVE-2009-0166</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0195.html">CVE-2009-0195</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0791.html">CVE-2009-0791</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0799.html">CVE-2009-0799</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0800.html">CVE-2009-0800</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1179.html">CVE-2009-1179</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1180.html">CVE-2009-1180</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1181.html">CVE-2009-1181</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1182.html">CVE-2009-1182</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1183.html">CVE-2009-1183</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3609.html">CVE-2009-3609</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0739.html">CVE-2010-0739</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0827.html">CVE-2010-0827</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1440.html">CVE-2010-1440</cve>
                <bugzilla href="http://bugzilla.redhat.com/368591" id="368591">CVE-2007-5935 dvips -z buffer overflow with long href</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/490612" id="490612">CVE-2009-0146 xpdf: Multiple buffer overflows in JBIG2 decoder (setBitmap, readSymbolDictSeg) (CVE-2009-0195)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/490614" id="490614">CVE-2009-0147 xpdf: Multiple integer overflows in JBIG2 decoder</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/490625" id="490625">CVE-2009-0166 xpdf: Freeing of potentially uninitialized memory in JBIG2 decoder</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/491840" id="491840">CVE-2009-0791 xpdf: multiple integer overflows</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495886" id="495886">CVE-2009-0799 PDF JBIG2 decoder OOB read</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495887" id="495887">CVE-2009-0800 PDF JBIG2 multiple input validation flaws</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495889" id="495889">CVE-2009-1179 PDF JBIG2 integer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495892" id="495892">CVE-2009-1180 PDF JBIG2 invalid free()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495894" id="495894">CVE-2009-1181 PDF JBIG2 NULL dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495896" id="495896">CVE-2009-1182 PDF JBIG2 MMR decoder buffer overflows</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495899" id="495899">CVE-2009-1183 PDF JBIG2 MMR infinite loop DoS</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526893" id="526893">CVE-2009-3609 xpdf/poppler: ImageStream::ImageStream integer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/572914" id="572914">CVE-2010-0827 tetex, texlive: Buffer overflow flaw by processing virtual font files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/572941" id="572941">CVE-2010-0739 tetex, texlive: Integer overflow by processing special commands</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/586819" id="586819">CVE-2010-1440 tetex, texlive: Integer overflow by processing special commands</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100399012" comment="tetex-xdvi is earlier than 0:2.0.2-22.0.1.EL4.16" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399013" comment="tetex-xdvi is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100399002" comment="tetex is earlier than 0:2.0.2-22.0.1.EL4.16" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399003" comment="tetex is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100399010" comment="tetex-fonts is earlier than 0:2.0.2-22.0.1.EL4.16" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399011" comment="tetex-fonts is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100399008" comment="tetex-latex is earlier than 0:2.0.2-22.0.1.EL4.16" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399009" comment="tetex-latex is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100399004" comment="tetex-doc is earlier than 0:2.0.2-22.0.1.EL4.16" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399005" comment="tetex-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100399006" comment="tetex-dvips is earlier than 0:2.0.2-22.0.1.EL4.16" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399007" comment="tetex-dvips is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100399014" comment="tetex-afm is earlier than 0:2.0.2-22.0.1.EL4.16" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399015" comment="tetex-afm is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100400" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0400: tetex security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0400-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0400.html" />
          <reference source="CVE" ref_id="CVE-2009-0146" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0146.html" />
          <reference source="CVE" ref_id="CVE-2009-0147" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0147.html" />
          <reference source="CVE" ref_id="CVE-2009-0166" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0166.html" />
          <reference source="CVE" ref_id="CVE-2009-0195" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0195.html" />
          <reference source="CVE" ref_id="CVE-2009-0791" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0791.html" />
          <reference source="CVE" ref_id="CVE-2009-0799" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0799.html" />
          <reference source="CVE" ref_id="CVE-2009-0800" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0800.html" />
          <reference source="CVE" ref_id="CVE-2009-1179" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1179.html" />
          <reference source="CVE" ref_id="CVE-2009-1180" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1180.html" />
          <reference source="CVE" ref_id="CVE-2009-1181" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1181.html" />
          <reference source="CVE" ref_id="CVE-2009-1182" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1182.html" />
          <reference source="CVE" ref_id="CVE-2009-1183" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1183.html" />
          <reference source="CVE" ref_id="CVE-2009-3608" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3608.html" />
          <reference source="CVE" ref_id="CVE-2009-3609" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3609.html" />
          <reference source="CVE" ref_id="CVE-2010-0739" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0739.html" />
          <reference source="CVE" ref_id="CVE-2010-0829" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0829.html" />
          <reference source="CVE" ref_id="CVE-2010-1440" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1440.html" />
    
    <description>teTeX is an implementation of TeX. TeX takes a text file and a set of
formatting commands as input, and creates a typesetter-independent DeVice
Independent (DVI) file as output.

Multiple integer overflow flaws were found in the way teTeX processed
special commands when converting DVI files into PostScript. An attacker
could create a malicious DVI file that would cause the dvips executable to
crash or, potentially, execute arbitrary code. (CVE-2010-0739,
CVE-2010-1440)

Multiple array index errors were found in the way teTeX converted DVI files
into the Portable Network Graphics (PNG) format. An attacker could create a
malicious DVI file that would cause the dvipng executable to crash.
(CVE-2010-0829)

teTeX embeds a copy of Xpdf, an open source Portable Document Format (PDF)
file viewer, to allow adding images in PDF format to the generated PDF
documents. The following issues affect Xpdf code:

Multiple integer overflow flaws were found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash or, potentially,
execute arbitrary code with the privileges of the user running pdflatex.
(CVE-2009-0147, CVE-2009-1179)

Multiple integer overflow flaws were found in Xpdf. If a local user
generated a PDF file from a TeX document, referencing a specially-crafted
PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary
code with the privileges of the user running pdflatex. (CVE-2009-0791,
CVE-2009-3608, CVE-2009-3609)

A heap-based buffer overflow flaw was found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash or, potentially,
execute arbitrary code with the privileges of the user running pdflatex.
(CVE-2009-0195)

Multiple buffer overflow flaws were found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash or, potentially,
execute arbitrary code with the privileges of the user running pdflatex.
(CVE-2009-0146, CVE-2009-1182)

Multiple flaws were found in Xpdf's JBIG2 decoder that could lead to the
freeing of arbitrary memory. If a local user generated a PDF file from a
TeX document, referencing a specially-crafted PDF file, it would cause
Xpdf to crash or, potentially, execute arbitrary code with the privileges
of the user running pdflatex. (CVE-2009-0166, CVE-2009-1180)

Multiple input validation flaws were found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash or, potentially,
execute arbitrary code with the privileges of the user running pdflatex.
(CVE-2009-0800)

Multiple denial of service flaws were found in Xpdf's JBIG2 decoder. If a
local user generated a PDF file from a TeX document, referencing a
specially-crafted PDF file, it would cause Xpdf to crash. (CVE-2009-0799,
CVE-2009-1181, CVE-2009-1183)

Red Hat would like to thank Braden Thomas and Drew Yao of the Apple Product
Security team, Will Dormann of the CERT/CC, Alin Rad Pop of Secunia
Research, and Chris Rohlf, for responsibly reporting the Xpdf flaws.

All users of tetex are advised to upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-06" />
        <updated date="2010-05-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0146.html">CVE-2009-0146</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0147.html">CVE-2009-0147</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0166.html">CVE-2009-0166</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0195.html">CVE-2009-0195</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0791.html">CVE-2009-0791</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0799.html">CVE-2009-0799</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0800.html">CVE-2009-0800</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1179.html">CVE-2009-1179</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1180.html">CVE-2009-1180</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1181.html">CVE-2009-1181</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1182.html">CVE-2009-1182</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1183.html">CVE-2009-1183</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3608.html">CVE-2009-3608</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3609.html">CVE-2009-3609</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0739.html">CVE-2010-0739</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0829.html">CVE-2010-0829</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1440.html">CVE-2010-1440</cve>
                <bugzilla href="http://bugzilla.redhat.com/490612" id="490612">CVE-2009-0146 xpdf: Multiple buffer overflows in JBIG2 decoder (setBitmap, readSymbolDictSeg) (CVE-2009-0195)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/490614" id="490614">CVE-2009-0147 xpdf: Multiple integer overflows in JBIG2 decoder</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/490625" id="490625">CVE-2009-0166 xpdf: Freeing of potentially uninitialized memory in JBIG2 decoder</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/491840" id="491840">CVE-2009-0791 xpdf: multiple integer overflows</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495886" id="495886">CVE-2009-0799 PDF JBIG2 decoder OOB read</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495887" id="495887">CVE-2009-0800 PDF JBIG2 multiple input validation flaws</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495889" id="495889">CVE-2009-1179 PDF JBIG2 integer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495892" id="495892">CVE-2009-1180 PDF JBIG2 invalid free()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495894" id="495894">CVE-2009-1181 PDF JBIG2 NULL dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495896" id="495896">CVE-2009-1182 PDF JBIG2 MMR decoder buffer overflows</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/495899" id="495899">CVE-2009-1183 PDF JBIG2 MMR infinite loop DoS</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526637" id="526637">CVE-2009-3608 xpdf/poppler: integer overflow in ObjectStream::ObjectStream (oCERT-2009-016)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526893" id="526893">CVE-2009-3609 xpdf/poppler: ImageStream::ImageStream integer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/572941" id="572941">CVE-2010-0739 tetex, texlive: Integer overflow by processing special commands</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/573999" id="573999">CVE-2010-0829 tetex, dvipng: Multiple array index errors during DVI-to-PNG translation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/586819" id="586819">CVE-2010-1440 tetex, texlive: Integer overflow by processing special commands</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100400004" comment="tetex-xdvi is earlier than 0:3.0-33.8.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100400005" comment="tetex-xdvi is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100400002" comment="tetex is earlier than 0:3.0-33.8.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100400003" comment="tetex is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100400010" comment="tetex-fonts is earlier than 0:3.0-33.8.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100400011" comment="tetex-fonts is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100400012" comment="tetex-latex is earlier than 0:3.0-33.8.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100400013" comment="tetex-latex is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100400008" comment="tetex-doc is earlier than 0:3.0-33.8.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100400009" comment="tetex-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100400014" comment="tetex-dvips is earlier than 0:3.0-33.8.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100400015" comment="tetex-dvips is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100400006" comment="tetex-afm is earlier than 0:3.0-33.8.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100400007" comment="tetex-afm is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100401" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0401: tetex security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0401-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0401.html" />
          <reference source="CVE" ref_id="CVE-2007-5935" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-5935.html" />
          <reference source="CVE" ref_id="CVE-2009-0791" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0791.html" />
          <reference source="CVE" ref_id="CVE-2009-3609" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3609.html" />
          <reference source="CVE" ref_id="CVE-2010-0739" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0739.html" />
          <reference source="CVE" ref_id="CVE-2010-0827" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0827.html" />
          <reference source="CVE" ref_id="CVE-2010-1440" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1440.html" />
    
    <description>teTeX is an implementation of TeX. TeX takes a text file and a set of
formatting commands as input, and creates a typesetter-independent DeVice
Independent (DVI) file as output.

A buffer overflow flaw was found in the way teTeX processed virtual font
files when converting DVI files into PostScript. An attacker could create a
malicious DVI file that would cause the dvips executable to crash or,
potentially, execute arbitrary code. (CVE-2010-0827)

Multiple integer overflow flaws were found in the way teTeX processed
special commands when converting DVI files into PostScript. An attacker
could create a malicious DVI file that would cause the dvips executable to
crash or, potentially, execute arbitrary code. (CVE-2010-0739,
CVE-2010-1440)

A stack-based buffer overflow flaw was found in the way teTeX processed DVI
files containing HyperTeX references with long titles, when converting them
into PostScript. An attacker could create a malicious DVI file that would
cause the dvips executable to crash. (CVE-2007-5935)

teTeX embeds a copy of Xpdf, an open source Portable Document Format (PDF)
file viewer, to allow adding images in PDF format to the generated PDF
documents. The following issues affect Xpdf code:

Multiple integer overflow flaws were found in Xpdf. If a local user
generated a PDF file from a TeX document, referencing a specially-crafted
PDF file, it would cause Xpdf to crash or, potentially, execute arbitrary
code with the privileges of the user running pdflatex. (CVE-2009-0791,
CVE-2009-3609)

All users of tetex are advised to upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-06" />
        <updated date="2010-05-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-5935.html">CVE-2007-5935</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0791.html">CVE-2009-0791</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3609.html">CVE-2009-3609</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0739.html">CVE-2010-0739</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0827.html">CVE-2010-0827</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1440.html">CVE-2010-1440</cve>
                <bugzilla href="http://bugzilla.redhat.com/368591" id="368591">CVE-2007-5935 dvips -z buffer overflow with long href</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/491840" id="491840">CVE-2009-0791 xpdf: multiple integer overflows</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/526893" id="526893">CVE-2009-3609 xpdf/poppler: ImageStream::ImageStream integer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/572914" id="572914">CVE-2010-0827 tetex, texlive: Buffer overflow flaw by processing virtual font files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/572941" id="572941">CVE-2010-0739 tetex, texlive: Integer overflow by processing special commands</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/586819" id="586819">CVE-2010-1440 tetex, texlive: Integer overflow by processing special commands</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100401006" comment="tetex-xdvi is earlier than 0:1.0.7-67.19" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399013" comment="tetex-xdvi is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100401002" comment="tetex is earlier than 0:1.0.7-67.19" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399003" comment="tetex is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100401012" comment="tetex-fonts is earlier than 0:1.0.7-67.19" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399011" comment="tetex-fonts is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100401008" comment="tetex-latex is earlier than 0:1.0.7-67.19" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399009" comment="tetex-latex is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100401004" comment="tetex-doc is earlier than 0:1.0.7-67.19" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399005" comment="tetex-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100401014" comment="tetex-dvips is earlier than 0:1.0.7-67.19" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399007" comment="tetex-dvips is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100401010" comment="tetex-afm is earlier than 0:1.0.7-67.19" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100399015" comment="tetex-afm is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100423" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0423: krb5 security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0423-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0423.html" />
          <reference source="CVE" ref_id="CVE-2010-1321" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1321.html" />
    
    <description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other using symmetric encryption and a
trusted third party, the Key Distribution Center (KDC).

A NULL pointer dereference flaw was discovered in the MIT Kerberos Generic
Security Service Application Program Interface (GSS-API) library. A remote,
authenticated attacker could use this flaw to crash any server application
using the GSS-API authentication mechanism, by sending a specially-crafted
GSS-API token with a missing checksum field. (CVE-2010-1321)

Red Hat would like to thank the MIT Kerberos Team for responsibly reporting
this issue. Upstream acknowledges Shawn Emery of Oracle as the original
reporter.

All krb5 users should upgrade to these updated packages, which contain a
backported patch to correct this issue. All running services using the MIT
Kerberos libraries must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-18" />
        <updated date="2010-05-18" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1321.html">CVE-2010-1321</cve>
                <bugzilla href="http://bugzilla.redhat.com/582466" id="582466">CVE-2010-1321 krb5: null pointer dereference in GSS-API library leads to DoS (MITKRB5-SA-2010-005)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423006" comment="krb5-libs is earlier than 0:1.6.1-36.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029007" comment="krb5-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423004" comment="krb5-devel is earlier than 0:1.6.1-36.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029005" comment="krb5-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423008" comment="krb5-server is earlier than 0:1.6.1-36.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029011" comment="krb5-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423002" comment="krb5 is earlier than 0:1.6.1-36.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029003" comment="krb5 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423010" comment="krb5-workstation is earlier than 0:1.6.1-36.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029009" comment="krb5-workstation is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423017" comment="krb5-libs is earlier than 0:1.2.7-72" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029016" comment="krb5-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423019" comment="krb5-devel is earlier than 0:1.2.7-72" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029018" comment="krb5-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423021" comment="krb5-server is earlier than 0:1.2.7-72" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029020" comment="krb5-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423013" comment="krb5 is earlier than 0:1.2.7-72" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029014" comment="krb5 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423015" comment="krb5-workstation is earlier than 0:1.2.7-72" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029022" comment="krb5-workstation is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423025" comment="krb5-libs is earlier than 0:1.3.4-62.el4_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029016" comment="krb5-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423027" comment="krb5-devel is earlier than 0:1.3.4-62.el4_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029018" comment="krb5-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423026" comment="krb5-server is earlier than 0:1.3.4-62.el4_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029020" comment="krb5-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423024" comment="krb5 is earlier than 0:1.3.4-62.el4_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029014" comment="krb5 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100423028" comment="krb5-workstation is earlier than 0:1.3.4-62.el4_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029022" comment="krb5-workstation is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100427" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0427: postgresql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0427-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0427.html" />
          <reference source="CVE" ref_id="CVE-2009-4136" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4136.html" />
          <reference source="CVE" ref_id="CVE-2010-0442" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0442.html" />
          <reference source="CVE" ref_id="CVE-2010-0733" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0733.html" />
          <reference source="CVE" ref_id="CVE-2010-1169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1169.html" />
          <reference source="CVE" ref_id="CVE-2010-1170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1170.html" />
    
    <description>PostgreSQL is an advanced object-relational database management system
(DBMS). PL/Perl and PL/Tcl allow users to write PostgreSQL functions in the
Perl and Tcl languages, and are installed in trusted mode by default. In
trusted mode, certain operations, such as operating system level access,
are restricted.

A flaw was found in the way PostgreSQL enforced permission checks on
scripts written in PL/Perl. If the PL/Perl procedural language was
registered on a particular database, an authenticated database user running
a specially-crafted PL/Perl script could use this flaw to bypass intended
PL/Perl trusted mode restrictions, allowing them to run arbitrary Perl
scripts with the privileges of the database server. (CVE-2010-1169)

Red Hat would like to thank Tim Bunce for responsibly reporting the
CVE-2010-1169 flaw.

A flaw was found in the way PostgreSQL enforced permission checks on
scripts written in PL/Tcl. If the PL/Tcl procedural language was registered
on a particular database, an authenticated database user running a
specially-crafted PL/Tcl script could use this flaw to bypass intended
PL/Tcl trusted mode restrictions, allowing them to run arbitrary Tcl
scripts with the privileges of the database server. (CVE-2010-1170)

A buffer overflow flaw was found in the way PostgreSQL retrieved a
substring from the bit string for BIT() and BIT VARYING() SQL data types.
An authenticated database user running a specially-crafted SQL query could
use this flaw to cause a temporary denial of service (postgres daemon
crash) or, potentially, execute arbitrary code with the privileges of the
database server. (CVE-2010-0442)

An integer overflow flaw was found in the way PostgreSQL used to calculate
the size of the hash table for joined relations. An authenticated database
user could create a specially-crafted SQL query which could cause a
temporary denial of service (postgres daemon crash) or, potentially,
execute arbitrary code with the privileges of the database server.
(CVE-2010-0733)

PostgreSQL improperly protected session-local state during the execution of
an index function by a database superuser during the database maintenance
operations. An authenticated database user could use this flaw to elevate
their privileges via specially-crafted index functions. (CVE-2009-4136)

All PostgreSQL users are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. Running
PostgreSQL instances must be restarted ("service rhdb restart") for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-19" />
        <updated date="2010-05-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4136.html">CVE-2009-4136</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0442.html">CVE-2010-0442</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0733.html">CVE-2010-0733</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1169.html">CVE-2010-1169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1170.html">CVE-2010-1170</cve>
                <bugzilla href="http://bugzilla.redhat.com/546321" id="546321">CVE-2009-4136 postgresql: SQL privilege escalation via modifications to session-local state</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546621" id="546621">CVE-2010-0733 postgresql: Integer overflow in hash table size calculation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559259" id="559259">CVE-2010-0442 postgresql: substring() negative length argument buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582615" id="582615">CVE-2010-1169 PostgreSQL: PL/Perl Intended restriction bypass</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/583072" id="583072">CVE-2010-1170 PostgreSQL: PL/Tcl Intended restriction bypass</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427014" comment="rh-postgresql-docs is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427015" comment="rh-postgresql-docs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427008" comment="rh-postgresql-jdbc is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427009" comment="rh-postgresql-jdbc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427012" comment="rh-postgresql-contrib is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427013" comment="rh-postgresql-contrib is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427002" comment="rh-postgresql is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427003" comment="rh-postgresql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427022" comment="rh-postgresql-pl is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427023" comment="rh-postgresql-pl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427020" comment="rh-postgresql-devel is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427021" comment="rh-postgresql-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427016" comment="rh-postgresql-python is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427017" comment="rh-postgresql-python is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427018" comment="rh-postgresql-libs is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427019" comment="rh-postgresql-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427010" comment="rh-postgresql-server is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427011" comment="rh-postgresql-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427006" comment="rh-postgresql-test is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427007" comment="rh-postgresql-test is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100427004" comment="rh-postgresql-tcl is earlier than 0:7.3.21-3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100427005" comment="rh-postgresql-tcl is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100428" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0428: postgresql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0428-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0428.html" />
          <reference source="CVE" ref_id="CVE-2009-4136" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4136.html" />
          <reference source="CVE" ref_id="CVE-2010-0442" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0442.html" />
          <reference source="CVE" ref_id="CVE-2010-0733" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0733.html" />
          <reference source="CVE" ref_id="CVE-2010-1169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1169.html" />
          <reference source="CVE" ref_id="CVE-2010-1170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1170.html" />
          <reference source="CVE" ref_id="CVE-2010-1975" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1975.html" />
    
    <description>PostgreSQL is an advanced object-relational database management system
(DBMS). PL/Perl and PL/Tcl allow users to write PostgreSQL functions in the
Perl and Tcl languages, and are installed in trusted mode by default. In
trusted mode, certain operations, such as operating system level access,
are restricted.

A flaw was found in the way PostgreSQL enforced permission checks on
scripts written in PL/Perl. If the PL/Perl procedural language was
registered on a particular database, an authenticated database user running
a specially-crafted PL/Perl script could use this flaw to bypass intended
PL/Perl trusted mode restrictions, allowing them to run arbitrary Perl
scripts with the privileges of the database server. (CVE-2010-1169)

Red Hat would like to thank Tim Bunce for responsibly reporting the
CVE-2010-1169 flaw.

A flaw was found in the way PostgreSQL enforced permission checks on
scripts written in PL/Tcl. If the PL/Tcl procedural language was registered
on a particular database, an authenticated database user running a
specially-crafted PL/Tcl script could use this flaw to bypass intended
PL/Tcl trusted mode restrictions, allowing them to run arbitrary Tcl
scripts with the privileges of the database server. (CVE-2010-1170)

A buffer overflow flaw was found in the way PostgreSQL retrieved a
substring from the bit string for BIT() and BIT VARYING() SQL data types.
An authenticated database user running a specially-crafted SQL query could
use this flaw to cause a temporary denial of service (postgres daemon
crash) or, potentially, execute arbitrary code with the privileges of the
database server. (CVE-2010-0442)

An integer overflow flaw was found in the way PostgreSQL used to calculate
the size of the hash table for joined relations. An authenticated database
user could create a specially-crafted SQL query which could cause a
temporary denial of service (postgres daemon crash) or, potentially,
execute arbitrary code with the privileges of the database server.
(CVE-2010-0733)

PostgreSQL improperly protected session-local state during the execution of
an index function by a database superuser during the database maintenance
operations. An authenticated database user could use this flaw to elevate
their privileges via specially-crafted index functions. (CVE-2009-4136)

These packages upgrade PostgreSQL to version 7.4.29. Refer to the
PostgreSQL Release Notes for a list of changes:

http://www.postgresql.org/docs/7.4/static/release.html

All PostgreSQL users are advised to upgrade to these updated packages,
which correct these issues. If the postgresql service is running, it will
be automatically restarted after installing this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-19" />
        <updated date="2010-05-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4136.html">CVE-2009-4136</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0442.html">CVE-2010-0442</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0733.html">CVE-2010-0733</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1169.html">CVE-2010-1169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1170.html">CVE-2010-1170</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1975.html">CVE-2010-1975</cve>
                <bugzilla href="http://bugzilla.redhat.com/546321" id="546321">CVE-2009-4136 postgresql: SQL privilege escalation via modifications to session-local state</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546621" id="546621">CVE-2010-0733 postgresql: Integer overflow in hash table size calculation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559259" id="559259">CVE-2010-0442 postgresql: substring() negative length argument buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582615" id="582615">CVE-2010-1169 PostgreSQL: PL/Perl Intended restriction bypass</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/583072" id="583072">CVE-2010-1170 PostgreSQL: PL/Tcl Intended restriction bypass</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428018" comment="postgresql-docs is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428019" comment="postgresql-docs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428004" comment="postgresql-jdbc is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428005" comment="postgresql-jdbc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428006" comment="postgresql-devel is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428007" comment="postgresql-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428022" comment="postgresql-contrib is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428023" comment="postgresql-contrib is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428010" comment="postgresql-test is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428011" comment="postgresql-test is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428020" comment="postgresql-libs is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428021" comment="postgresql-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428012" comment="postgresql-tcl is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428013" comment="postgresql-tcl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428002" comment="postgresql is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428003" comment="postgresql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428016" comment="postgresql-server is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428017" comment="postgresql-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428014" comment="postgresql-python is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428015" comment="postgresql-python is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100428008" comment="postgresql-pl is earlier than 0:7.4.29-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428009" comment="postgresql-pl is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100429" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0429: postgresql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0429-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0429.html" />
          <reference source="CVE" ref_id="CVE-2009-4136" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4136.html" />
          <reference source="CVE" ref_id="CVE-2010-0442" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0442.html" />
          <reference source="CVE" ref_id="CVE-2010-0733" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0733.html" />
          <reference source="CVE" ref_id="CVE-2010-1169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1169.html" />
          <reference source="CVE" ref_id="CVE-2010-1170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1170.html" />
          <reference source="CVE" ref_id="CVE-2010-1975" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1975.html" />
    
    <description>PostgreSQL is an advanced object-relational database management system
(DBMS). PL/Perl and PL/Tcl allow users to write PostgreSQL functions in the
Perl and Tcl languages, and are installed in trusted mode by default. In
trusted mode, certain operations, such as operating system level access,
are restricted.

A flaw was found in the way PostgreSQL enforced permission checks on
scripts written in PL/Perl. If the PL/Perl procedural language was
registered on a particular database, an authenticated database user running
a specially-crafted PL/Perl script could use this flaw to bypass intended
PL/Perl trusted mode restrictions, allowing them to run arbitrary Perl
scripts with the privileges of the database server. (CVE-2010-1169)

Red Hat would like to thank Tim Bunce for responsibly reporting the
CVE-2010-1169 flaw.

A flaw was found in the way PostgreSQL enforced permission checks on
scripts written in PL/Tcl. If the PL/Tcl procedural language was registered
on a particular database, an authenticated database user running a
specially-crafted PL/Tcl script could use this flaw to bypass intended
PL/Tcl trusted mode restrictions, allowing them to run arbitrary Tcl
scripts with the privileges of the database server. (CVE-2010-1170)

A buffer overflow flaw was found in the way PostgreSQL retrieved a
substring from the bit string for BIT() and BIT VARYING() SQL data types.
An authenticated database user running a specially-crafted SQL query could
use this flaw to cause a temporary denial of service (postgres daemon
crash) or, potentially, execute arbitrary code with the privileges of the
database server. (CVE-2010-0442)

An integer overflow flaw was found in the way PostgreSQL used to calculate
the size of the hash table for joined relations. An authenticated database
user could create a specially-crafted SQL query which could cause a
temporary denial of service (postgres daemon crash) or, potentially,
execute arbitrary code with the privileges of the database server.
(CVE-2010-0733)

PostgreSQL improperly protected session-local state during the execution of
an index function by a database superuser during the database maintenance
operations. An authenticated database user could use this flaw to elevate
their privileges via specially-crafted index functions. (CVE-2009-4136)

These packages upgrade PostgreSQL to version 8.1.21. Refer to the
PostgreSQL Release Notes for a list of changes:

http://www.postgresql.org/docs/8.1/static/release.html

All PostgreSQL users are advised to upgrade to these updated packages,
which correct these issues. If the postgresql service is running, it will
be automatically restarted after installing this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-19" />
        <updated date="2010-05-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4136.html">CVE-2009-4136</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0442.html">CVE-2010-0442</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0733.html">CVE-2010-0733</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1169.html">CVE-2010-1169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1170.html">CVE-2010-1170</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1975.html">CVE-2010-1975</cve>
                <bugzilla href="http://bugzilla.redhat.com/546321" id="546321">CVE-2009-4136 postgresql: SQL privilege escalation via modifications to session-local state</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/546621" id="546621">CVE-2010-0733 postgresql: Integer overflow in hash table size calculation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559259" id="559259">CVE-2010-0442 postgresql: substring() negative length argument buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582615" id="582615">CVE-2010-1169 PostgreSQL: PL/Perl Intended restriction bypass</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/583072" id="583072">CVE-2010-1170 PostgreSQL: PL/Tcl Intended restriction bypass</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429016" comment="postgresql-docs is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429017" comment="postgresql-docs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429004" comment="postgresql-devel is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429005" comment="postgresql-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429020" comment="postgresql-test is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429021" comment="postgresql-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429008" comment="postgresql-contrib is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429009" comment="postgresql-contrib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429006" comment="postgresql-libs is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429007" comment="postgresql-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429010" comment="postgresql-tcl is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429011" comment="postgresql-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429002" comment="postgresql is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429003" comment="postgresql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429018" comment="postgresql-server is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429019" comment="postgresql-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429014" comment="postgresql-pl is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429015" comment="postgresql-pl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100429012" comment="postgresql-python is earlier than 0:8.1.21-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429013" comment="postgresql-python is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100430" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0430: postgresql84 security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0430-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0430.html" />
          <reference source="CVE" ref_id="CVE-2010-1169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1169.html" />
          <reference source="CVE" ref_id="CVE-2010-1170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1170.html" />
          <reference source="CVE" ref_id="CVE-2010-1975" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1975.html" />
    
    <description>PostgreSQL is an advanced object-relational database management system
(DBMS). PL/Perl and PL/Tcl allow users to write PostgreSQL functions in the
Perl and Tcl languages, and are installed in trusted mode by default. In
trusted mode, certain operations, such as operating system level access,
are restricted.

A flaw was found in the way PostgreSQL enforced permission checks on
scripts written in PL/Perl. If the PL/Perl procedural language was
registered on a particular database, an authenticated database user running
a specially-crafted PL/Perl script could use this flaw to bypass intended
PL/Perl trusted mode restrictions, allowing them to run arbitrary Perl
scripts with the privileges of the database server. (CVE-2010-1169)

Red Hat would like to thank Tim Bunce for responsibly reporting the
CVE-2010-1169 flaw.

A flaw was found in the way PostgreSQL enforced permission checks on
scripts written in PL/Tcl. If the PL/Tcl procedural language was registered
on a particular database, an authenticated database user running a
specially-crafted PL/Tcl script could use this flaw to bypass intended
PL/Tcl trusted mode restrictions, allowing them to run arbitrary Tcl
scripts with the privileges of the database server. (CVE-2010-1170)

These packages upgrade PostgreSQL to version 8.4.4. Refer to the PostgreSQL
Release Notes for a list of changes:

http://www.postgresql.org/docs/8.4/static/release.html

All PostgreSQL users are advised to upgrade to these updated packages,
which correct these issues. If the postgresql service is running, it will
be automatically restarted after installing this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-19" />
        <updated date="2010-05-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1169.html">CVE-2010-1169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1170.html">CVE-2010-1170</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1975.html">CVE-2010-1975</cve>
                <bugzilla href="http://bugzilla.redhat.com/582615" id="582615">CVE-2010-1169 PostgreSQL: PL/Perl Intended restriction bypass</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/583072" id="583072">CVE-2010-1170 PostgreSQL: PL/Tcl Intended restriction bypass</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430008" comment="postgresql84-tcl is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430009" comment="postgresql84-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430010" comment="postgresql84-docs is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430011" comment="postgresql84-docs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430024" comment="postgresql84-python is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430025" comment="postgresql84-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430018" comment="postgresql84-plpython is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430019" comment="postgresql84-plpython is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430020" comment="postgresql84-test is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430021" comment="postgresql84-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430012" comment="postgresql84-libs is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430013" comment="postgresql84-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430006" comment="postgresql84-server is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430007" comment="postgresql84-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430014" comment="postgresql84-pltcl is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430015" comment="postgresql84-pltcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430004" comment="postgresql84-plperl is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430005" comment="postgresql84-plperl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430016" comment="postgresql84-devel is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430017" comment="postgresql84-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430002" comment="postgresql84 is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430003" comment="postgresql84 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100430022" comment="postgresql84-contrib is earlier than 0:8.4.4-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430023" comment="postgresql84-contrib is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100442" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0442: mysql security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0442-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0442.html" />
          <reference source="CVE" ref_id="CVE-2010-1626" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1626.html" />
          <reference source="CVE" ref_id="CVE-2010-1848" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1848.html" />
          <reference source="CVE" ref_id="CVE-2010-1850" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1850.html" />
    
    <description>MySQL is a multi-user, multi-threaded SQL database server. It consists of
the MySQL server daemon (mysqld) and many client programs and libraries.

A buffer overflow flaw was found in the way MySQL handled the parameters of
the MySQL COM_FIELD_LIST network protocol command (this command is sent
when a client uses the MySQL mysql_list_fields() client library function).
An authenticated database user could send a request with an excessively
long table name to cause a temporary denial of service (mysqld crash) or,
potentially, execute arbitrary code with the privileges of the database
server. (CVE-2010-1850)

A directory traversal flaw was found in the way MySQL handled the
parameters of the MySQL COM_FIELD_LIST network protocol command. An
authenticated database user could use this flaw to obtain descriptions of
the fields of an arbitrary table using a request with a specially-crafted
table name. (CVE-2010-1848)

A flaw was discovered in the way MySQL handled symbolic links to tables
created using the DATA DIRECTORY and INDEX DIRECTORY directives in CREATE
TABLE statements. An attacker with CREATE and DROP table privileges, and
shell access to the database server, could use this flaw to remove data and
index files of tables created by other database users using the MyISAM
storage engine. (CVE-2010-1626)

All MySQL users are advised to upgrade to these updated packages, which
contain backported patches to resolve these issues. After installing this
update, the MySQL server daemon (mysqld) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-05-26" />
        <updated date="2010-05-26" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1626.html">CVE-2010-1626</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1848.html">CVE-2010-1848</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1850.html">CVE-2010-1850</cve>
                <bugzilla href="http://bugzilla.redhat.com/553648" id="553648">CVE-2010-1626 mysql: table destruction via DATA/INDEX DIRECTORY directives using symlinks</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/592079" id="592079">CVE-2010-1848 mysql: multiple insufficient table name checks</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/592091" id="592091">CVE-2010-1850 mysql: COM_FIELD_LIST table name buffer overflow</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100442004" comment="mysql-test is earlier than 0:5.0.77-4.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109009" comment="mysql-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100442002" comment="mysql is earlier than 0:5.0.77-4.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109003" comment="mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100442006" comment="mysql-server is earlier than 0:5.0.77-4.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109011" comment="mysql-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100442010" comment="mysql-bench is earlier than 0:5.0.77-4.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109005" comment="mysql-bench is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100442008" comment="mysql-devel is earlier than 0:5.0.77-4.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109007" comment="mysql-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100449" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0449: rhn-client-tools security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0449-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0449.html" />
          <reference source="CVE" ref_id="CVE-2010-1439" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1439.html" />
    
    <description>Red Hat Network Client Tools provide programs and libraries that allow your
system to receive software updates from the Red Hat Network (RHN).

It was discovered that rhn-client-tools set insecure permissions on the
loginAuth.pkl file, used to store session credentials for authenticating
connections to Red Hat Network servers. A local, unprivileged user could
use these credentials to download packages from the Red Hat Network. They
could also manipulate package or action lists associated with the system's
profile. (CVE-2010-1439)

Users of rhn-client-tools are advised to upgrade to these updated packages,
which contain a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-01" />
        <updated date="2010-06-01" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1439.html">CVE-2010-1439</cve>
                <bugzilla href="http://bugzilla.redhat.com/585386" id="585386">CVE-2010-1439 rhn-client-tools: authorized information disclosure</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100449008" comment="rhn-check is earlier than 0:0.4.20-33.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100449009" comment="rhn-check is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100449004" comment="rhn-setup-gnome is earlier than 0:0.4.20-33.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100449005" comment="rhn-setup-gnome is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100449002" comment="rhn-client-tools is earlier than 0:0.4.20-33.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100449003" comment="rhn-client-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100449006" comment="rhn-setup is earlier than 0:0.4.20-33.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100449007" comment="rhn-setup is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100457" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0457: perl security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0457-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0457.html" />
          <reference source="CVE" ref_id="CVE-2010-1168" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1168.html" />
          <reference source="CVE" ref_id="CVE-2010-1447" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1447.html" />
    
    <description>Perl is a high-level programming language commonly used for system
administration utilities and web programming. The Safe extension module
allows users to compile and execute Perl code in restricted compartments.

The Safe module did not properly restrict the code of implicitly called
methods (such as DESTROY and AUTOLOAD) on implicitly blessed objects
returned as a result of unsafe code evaluation. These methods could have
been executed unrestricted by Safe when such objects were accessed or
destroyed. A specially-crafted Perl script executed inside of a Safe
compartment could use this flaw to bypass intended Safe module
restrictions. (CVE-2010-1168)

The Safe module did not properly restrict code compiled in a Safe
compartment and executed out of the compartment via a subroutine reference
returned as a result of unsafe code evaluation. A specially-crafted Perl
script executed inside of a Safe compartment could use this flaw to bypass
intended Safe module restrictions, if the returned subroutine reference was
called from outside of the compartment. (CVE-2010-1447)

Red Hat would like to thank Tim Bunce for responsibly reporting the
CVE-2010-1168 and CVE-2010-1447 issues. Upstream acknowledges Nick Cleaton
as the original reporter of CVE-2010-1168, and Tim Bunce and Rafaël
Garcia-Suarez as the original reporters of CVE-2010-1447.

These packages upgrade the Safe extension module to version 2.27. Refer to
the Safe module's Changes file, linked to in the References, for a full
list of changes.

Users of perl are advised to upgrade to these updated packages, which
correct these issues. All applications using the Safe extension module must
be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-07" />
        <updated date="2010-06-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1168.html">CVE-2010-1168</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1447.html">CVE-2010-1447</cve>
                <bugzilla href="http://bugzilla.redhat.com/576508" id="576508">CVE-2010-1168 perl Safe: Intended restriction bypass via object references</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/588269" id="588269">CVE-2010-1447 perl: Safe restriction bypass when reference to subroutine in compartment is called from outside</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100457010" comment="perl-CGI is earlier than 2:2.89-101.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100457011" comment="perl-CGI is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100457004" comment="perl-DB_File is earlier than 2:1.806-101.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100457005" comment="perl-DB_File is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100457008" comment="perl-suidperl is earlier than 2:5.8.0-101.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100457009" comment="perl-suidperl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100457006" comment="perl-CPAN is earlier than 2:1.61-101.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100457007" comment="perl-CPAN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100457002" comment="perl is earlier than 2:5.8.0-101.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100457003" comment="perl is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100457014" comment="perl-suidperl is earlier than 3:5.8.5-53.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100457009" comment="perl-suidperl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100457013" comment="perl is earlier than 3:5.8.5-53.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100457003" comment="perl is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100458" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0458: perl security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0458-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0458.html" />
          <reference source="CVE" ref_id="CVE-2008-5302" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-5302.html" />
          <reference source="CVE" ref_id="CVE-2008-5303" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-5303.html" />
          <reference source="CVE" ref_id="CVE-2010-1168" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1168.html" />
          <reference source="CVE" ref_id="CVE-2010-1447" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1447.html" />
    
    <description>Perl is a high-level programming language commonly used for system
administration utilities and web programming. The Safe extension module
allows users to compile and execute Perl code in restricted compartments.
The File::Path module allows users to create and remove directory trees.

The Safe module did not properly restrict the code of implicitly called
methods (such as DESTROY and AUTOLOAD) on implicitly blessed objects
returned as a result of unsafe code evaluation. These methods could have
been executed unrestricted by Safe when such objects were accessed or
destroyed. A specially-crafted Perl script executed inside of a Safe
compartment could use this flaw to bypass intended Safe module
restrictions. (CVE-2010-1168)

The Safe module did not properly restrict code compiled in a Safe
compartment and executed out of the compartment via a subroutine reference
returned as a result of unsafe code evaluation. A specially-crafted Perl
script executed inside of a Safe compartment could use this flaw to bypass
intended Safe module restrictions, if the returned subroutine reference was
called from outside of the compartment. (CVE-2010-1447)

Multiple race conditions were found in the way the File::Path module's
rmtree function removed directory trees. A malicious, local user with write
access to a directory being removed by a victim, running a Perl script
using rmtree, could cause the permissions of arbitrary files to be changed
to world-writable and setuid, or delete arbitrary files via a symbolic link
attack, if the victim had the privileges to change the permissions of the
target files or to remove them. (CVE-2008-5302, CVE-2008-5303)

Red Hat would like to thank Tim Bunce for responsibly reporting the
CVE-2010-1168 and CVE-2010-1447 issues. Upstream acknowledges Nick Cleaton
as the original reporter of CVE-2010-1168, and Tim Bunce and Rafaël
Garcia-Suarez as the original reporters of CVE-2010-1447.

These packages upgrade the Safe extension module to version 2.27. Refer to
the Safe module's Changes file, linked to in the References, for a full
list of changes.

Users of perl are advised to upgrade to these updated packages, which
correct these issues. All applications using the Safe or File::Path modules
must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-07" />
        <updated date="2010-06-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-5302.html">CVE-2008-5302</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-5303.html">CVE-2008-5303</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1168.html">CVE-2010-1168</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1447.html">CVE-2010-1447</cve>
                <bugzilla href="http://bugzilla.redhat.com/473450" id="473450">CVE-2008-5302 perl: File::Path rmtree race condition (CVE-2005-0448) reintroduced after upstream rebase to 5.8.8-1</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/474217" id="474217">CVE-2008-5303 symlink perl: File::Path rmtree race condition (CVE-2004-0452) reintroduced after upstream rebase to 5.8.8-1</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/576508" id="576508">CVE-2010-1168 perl Safe: Intended restriction bypass via object references</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/588269" id="588269">CVE-2010-1447 perl: Safe restriction bypass when reference to subroutine in compartment is called from outside</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100458004" comment="perl-suidperl is earlier than 4:5.8.8-32.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100458005" comment="perl-suidperl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100458002" comment="perl is earlier than 4:5.8.8-32.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100458003" comment="perl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100459" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0459: openoffice.org security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0459-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0459.html" />
          <reference source="CVE" ref_id="CVE-2010-0395" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0395.html" />
    
    <description>OpenOffice.org is an office productivity suite that includes desktop
applications, such as a word processor, spreadsheet application,
presentation manager, formula editor, and a drawing program.

A flaw was found in the way OpenOffice.org enforced a macro security
setting for macros, written in the Python scripting language, that were
embedded in OpenOffice.org documents. If a user were tricked into opening
a specially-crafted OpenOffice.org document and previewed the macro
directory structure, it could lead to Python macro execution even if macro
execution was disabled. (CVE-2010-0395)

All users of OpenOffice.org are advised to upgrade to these updated
packages, which contain a backported patch to correct this issue. For Red
Hat Enterprise Linux 4, this erratum provides updated openoffice.org2
packages. For Red Hat Enterprise Linux 5, this erratum provides updated
openoffice.org packages. All running instances of OpenOffice.org
applications must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-07" />
        <updated date="2010-06-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0395.html">CVE-2010-0395</cve>
                <bugzilla href="http://bugzilla.redhat.com/574119" id="574119">CVE-2010-0395 openoffice.org Execution of Python code when browsing macros</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459002" comment="openoffice.org is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101003" comment="openoffice.org is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459018" comment="openoffice.org-langpack-tn_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101153" comment="openoffice.org-langpack-tn_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459064" comment="openoffice.org-langpack-xh_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101031" comment="openoffice.org-langpack-xh_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459032" comment="openoffice.org-ure is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100459033" comment="openoffice.org-ure is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459132" comment="openoffice.org-langpack-af_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101021" comment="openoffice.org-langpack-af_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459052" comment="openoffice.org-langpack-tr_TR is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101141" comment="openoffice.org-langpack-tr_TR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459070" comment="openoffice.org-langpack-te_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101059" comment="openoffice.org-langpack-te_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459058" comment="openoffice.org-langpack-ss_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101075" comment="openoffice.org-langpack-ss_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459122" comment="openoffice.org-calc is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101065" comment="openoffice.org-calc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459060" comment="openoffice.org-langpack-ml_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101029" comment="openoffice.org-langpack-ml_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459012" comment="openoffice.org-langpack-nl is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101067" comment="openoffice.org-langpack-nl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459092" comment="openoffice.org-langpack-nn_NO is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101047" comment="openoffice.org-langpack-nn_NO is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459136" comment="openoffice.org-langpack-nb_NO is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101013" comment="openoffice.org-langpack-nb_NO is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459020" comment="openoffice.org-testtools is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101099" comment="openoffice.org-testtools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459082" comment="openoffice.org-headless is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101135" comment="openoffice.org-headless is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459076" comment="openoffice.org-langpack-ta_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101089" comment="openoffice.org-langpack-ta_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459156" comment="openoffice.org-langpack-it is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101041" comment="openoffice.org-langpack-it is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459088" comment="openoffice.org-langpack-el_GR is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101027" comment="openoffice.org-langpack-el_GR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459126" comment="openoffice.org-base is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101107" comment="openoffice.org-base is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459134" comment="openoffice.org-draw is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101145" comment="openoffice.org-draw is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459048" comment="openoffice.org-langpack-da_DK is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101025" comment="openoffice.org-langpack-da_DK is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459124" comment="openoffice.org-langpack-ca_ES is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101121" comment="openoffice.org-langpack-ca_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459086" comment="openoffice.org-langpack-es is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101085" comment="openoffice.org-langpack-es is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459094" comment="openoffice.org-langpack-cs_CZ is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101119" comment="openoffice.org-langpack-cs_CZ is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459112" comment="openoffice.org-langpack-ar is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101033" comment="openoffice.org-langpack-ar is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459028" comment="openoffice.org-langpack-sl_SI is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101091" comment="openoffice.org-langpack-sl_SI is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459022" comment="openoffice.org-langpack-nr_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101155" comment="openoffice.org-langpack-nr_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459072" comment="openoffice.org-langpack-kn_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101103" comment="openoffice.org-langpack-kn_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459116" comment="openoffice.org-langpack-as_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101097" comment="openoffice.org-langpack-as_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459080" comment="openoffice.org-langpack-ts_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101005" comment="openoffice.org-langpack-ts_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459008" comment="openoffice.org-langpack-ja_JP is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101101" comment="openoffice.org-langpack-ja_JP is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459036" comment="openoffice.org-langpack-sk_SK is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101109" comment="openoffice.org-langpack-sk_SK is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459130" comment="openoffice.org-langpack-pt_PT is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101151" comment="openoffice.org-langpack-pt_PT is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459152" comment="openoffice.org-langpack-st_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101125" comment="openoffice.org-langpack-st_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459144" comment="openoffice.org-langpack-zh_TW is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101007" comment="openoffice.org-langpack-zh_TW is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459040" comment="openoffice.org-langpack-ru is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101043" comment="openoffice.org-langpack-ru is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459042" comment="openoffice.org-xsltfilter is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101023" comment="openoffice.org-xsltfilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459114" comment="openoffice.org-langpack-cy_GB is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101127" comment="openoffice.org-langpack-cy_GB is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459074" comment="openoffice.org-langpack-fi_FI is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101049" comment="openoffice.org-langpack-fi_FI is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459090" comment="openoffice.org-langpack-pa_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101113" comment="openoffice.org-langpack-pa_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459038" comment="openoffice.org-langpack-he_IL is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101137" comment="openoffice.org-langpack-he_IL is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459084" comment="openoffice.org-langpack-ms_MY is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101061" comment="openoffice.org-langpack-ms_MY is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459104" comment="openoffice.org-langpack-bn is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101115" comment="openoffice.org-langpack-bn is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459118" comment="openoffice.org-graphicfilter is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101093" comment="openoffice.org-graphicfilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459148" comment="openoffice.org-langpack-bg_BG is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101095" comment="openoffice.org-langpack-bg_BG is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459120" comment="openoffice.org-pyuno is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101069" comment="openoffice.org-pyuno is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459010" comment="openoffice.org-writer is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101045" comment="openoffice.org-writer is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459154" comment="openoffice.org-langpack-fr is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101105" comment="openoffice.org-langpack-fr is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459138" comment="openoffice.org-sdk is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101079" comment="openoffice.org-sdk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459014" comment="openoffice.org-langpack-pl_PL is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101143" comment="openoffice.org-langpack-pl_PL is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459044" comment="openoffice.org-langpack-hr_HR is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101083" comment="openoffice.org-langpack-hr_HR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459128" comment="openoffice.org-langpack-hi_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101035" comment="openoffice.org-langpack-hi_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459106" comment="openoffice.org-langpack-pt_BR is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101129" comment="openoffice.org-langpack-pt_BR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459150" comment="openoffice.org-langpack-ur is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101037" comment="openoffice.org-langpack-ur is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459100" comment="openoffice.org-langpack-gu_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101057" comment="openoffice.org-langpack-gu_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459056" comment="openoffice.org-langpack-zu_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101081" comment="openoffice.org-langpack-zu_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459016" comment="openoffice.org-math is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101139" comment="openoffice.org-math is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459140" comment="openoffice.org-core is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101015" comment="openoffice.org-core is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459006" comment="openoffice.org-langpack-mr_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101071" comment="openoffice.org-langpack-mr_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459024" comment="openoffice.org-impress is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101111" comment="openoffice.org-impress is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459054" comment="openoffice.org-langpack-gl_ES is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101123" comment="openoffice.org-langpack-gl_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459110" comment="openoffice.org-langpack-et_EE is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101077" comment="openoffice.org-langpack-et_EE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459066" comment="openoffice.org-langpack-ko_KR is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101117" comment="openoffice.org-langpack-ko_KR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459102" comment="openoffice.org-langpack-hu_HU is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101011" comment="openoffice.org-langpack-hu_HU is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459142" comment="openoffice.org-sdk-doc is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101133" comment="openoffice.org-sdk-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459096" comment="openoffice.org-langpack-nso_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101087" comment="openoffice.org-langpack-nso_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459004" comment="openoffice.org-langpack-sr_CS is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101019" comment="openoffice.org-langpack-sr_CS is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459062" comment="openoffice.org-langpack-or_IN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101017" comment="openoffice.org-langpack-or_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459030" comment="openoffice.org-emailmerge is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101147" comment="openoffice.org-emailmerge is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459098" comment="openoffice.org-langpack-ve_ZA is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101149" comment="openoffice.org-langpack-ve_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459108" comment="openoffice.org-javafilter is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101051" comment="openoffice.org-javafilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459046" comment="openoffice.org-langpack-lt_LT is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101009" comment="openoffice.org-langpack-lt_LT is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459078" comment="openoffice.org-langpack-eu_ES is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101039" comment="openoffice.org-langpack-eu_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459146" comment="openoffice.org-langpack-th_TH is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101053" comment="openoffice.org-langpack-th_TH is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459068" comment="openoffice.org-langpack-zh_CN is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101063" comment="openoffice.org-langpack-zh_CN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459026" comment="openoffice.org-langpack-sv is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101055" comment="openoffice.org-langpack-sv is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459034" comment="openoffice.org-langpack-ga_IE is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101073" comment="openoffice.org-langpack-ga_IE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459050" comment="openoffice.org-langpack-de is earlier than 1:3.1.1-19.5.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101131" comment="openoffice.org-langpack-de is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459267" comment="openoffice.org2-pyuno is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101234" comment="openoffice.org2-pyuno is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459265" comment="openoffice.org2-langpack-af_ZA is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101204" comment="openoffice.org2-langpack-af_ZA is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459237" comment="openoffice.org2-langpack-he_IL is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101222" comment="openoffice.org2-langpack-he_IL is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459217" comment="openoffice.org2-xsltfilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101246" comment="openoffice.org2-xsltfilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459209" comment="openoffice.org2-langpack-ms_MY is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101252" comment="openoffice.org2-langpack-ms_MY is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459201" comment="openoffice.org2-langpack-ar is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101214" comment="openoffice.org2-langpack-ar is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459183" comment="openoffice.org2-langpack-ca_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101274" comment="openoffice.org2-langpack-ca_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459177" comment="openoffice.org2-core is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101184" comment="openoffice.org2-core is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459269" comment="openoffice.org2-calc is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101262" comment="openoffice.org2-calc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459233" comment="openoffice.org2-langpack-ta_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101250" comment="openoffice.org2-langpack-ta_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459227" comment="openoffice.org2-emailmerge is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101220" comment="openoffice.org2-emailmerge is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459213" comment="openoffice.org2-base is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101182" comment="openoffice.org2-base is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459195" comment="openoffice.org2-langpack-et_EE is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101202" comment="openoffice.org2-langpack-et_EE is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459221" comment="openoffice.org2-langpack-el_GR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101276" comment="openoffice.org2-langpack-el_GR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459215" comment="openoffice.org2-math is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101240" comment="openoffice.org2-math is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459199" comment="openoffice.org2-langpack-nl is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101192" comment="openoffice.org2-langpack-nl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459223" comment="openoffice.org2-langpack-gl_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101238" comment="openoffice.org2-langpack-gl_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459191" comment="openoffice.org2-langpack-cy_GB is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101198" comment="openoffice.org2-langpack-cy_GB is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459165" comment="openoffice.org2-writer is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101226" comment="openoffice.org2-writer is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459249" comment="openoffice.org2-langpack-it is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101272" comment="openoffice.org2-langpack-it is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459159" comment="openoffice.org2 is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101170" comment="openoffice.org2 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459273" comment="openoffice.org2-draw is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101180" comment="openoffice.org2-draw is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459261" comment="openoffice.org2-langpack-sk_SK is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101256" comment="openoffice.org2-langpack-sk_SK is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459259" comment="openoffice.org2-langpack-bn is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101188" comment="openoffice.org2-langpack-bn is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459251" comment="openoffice.org2-langpack-sr_CS is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101242" comment="openoffice.org2-langpack-sr_CS is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459243" comment="openoffice.org2-langpack-fr is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101190" comment="openoffice.org2-langpack-fr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459239" comment="openoffice.org2-langpack-de is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101200" comment="openoffice.org2-langpack-de is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459229" comment="openoffice.org2-langpack-hu_HU is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101218" comment="openoffice.org2-langpack-hu_HU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459197" comment="openoffice.org2-langpack-lt_LT is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101236" comment="openoffice.org2-langpack-lt_LT is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459189" comment="openoffice.org2-langpack-th_TH is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101212" comment="openoffice.org2-langpack-th_TH is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459187" comment="openoffice.org2-langpack-cs_CZ is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101224" comment="openoffice.org2-langpack-cs_CZ is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459179" comment="openoffice.org2-langpack-bg_BG is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101230" comment="openoffice.org2-langpack-bg_BG is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459175" comment="openoffice.org2-langpack-pt_PT is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101258" comment="openoffice.org2-langpack-pt_PT is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459255" comment="openoffice.org2-javafilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101286" comment="openoffice.org2-javafilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459241" comment="openoffice.org2-langpack-zu_ZA is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101260" comment="openoffice.org2-langpack-zu_ZA is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459231" comment="openoffice.org2-langpack-pt_BR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101196" comment="openoffice.org2-langpack-pt_BR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459203" comment="openoffice.org2-langpack-sl_SI is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101248" comment="openoffice.org2-langpack-sl_SI is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459163" comment="openoffice.org2-langpack-zh_CN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101186" comment="openoffice.org2-langpack-zh_CN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459253" comment="openoffice.org2-langpack-eu_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101232" comment="openoffice.org2-langpack-eu_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459225" comment="openoffice.org2-testtools is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101284" comment="openoffice.org2-testtools is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459219" comment="openoffice.org2-langpack-ga_IE is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101282" comment="openoffice.org2-langpack-ga_IE is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459205" comment="openoffice.org2-langpack-es is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101178" comment="openoffice.org2-langpack-es is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459185" comment="openoffice.org2-langpack-nb_NO is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101254" comment="openoffice.org2-langpack-nb_NO is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459181" comment="openoffice.org2-langpack-gu_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101174" comment="openoffice.org2-langpack-gu_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459171" comment="openoffice.org2-langpack-ru is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101176" comment="openoffice.org2-langpack-ru is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459169" comment="openoffice.org2-langpack-sv is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101268" comment="openoffice.org2-langpack-sv is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459257" comment="openoffice.org2-langpack-ko_KR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101280" comment="openoffice.org2-langpack-ko_KR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459247" comment="openoffice.org2-langpack-da_DK is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101264" comment="openoffice.org2-langpack-da_DK is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459207" comment="openoffice.org2-langpack-pa_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101270" comment="openoffice.org2-langpack-pa_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459161" comment="openoffice.org2-impress is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101278" comment="openoffice.org2-impress is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459275" comment="openoffice.org2-langpack-tr_TR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101206" comment="openoffice.org2-langpack-tr_TR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459271" comment="openoffice.org2-langpack-zh_TW is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101208" comment="openoffice.org2-langpack-zh_TW is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459263" comment="openoffice.org2-langpack-fi_FI is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101216" comment="openoffice.org2-langpack-fi_FI is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459245" comment="openoffice.org2-graphicfilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101266" comment="openoffice.org2-graphicfilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459235" comment="openoffice.org2-langpack-hi_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101194" comment="openoffice.org2-langpack-hi_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459211" comment="openoffice.org2-langpack-pl_PL is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101228" comment="openoffice.org2-langpack-pl_PL is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459193" comment="openoffice.org2-langpack-ja_JP is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101210" comment="openoffice.org2-langpack-ja_JP is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459167" comment="openoffice.org2-langpack-hr_HR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101172" comment="openoffice.org2-langpack-hr_HR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100459173" comment="openoffice.org2-langpack-nn_NO is earlier than 1:2.0.4-5.7.0.6.1.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101244" comment="openoffice.org2-langpack-nn_NO is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100464" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0464: flash-plugin security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0464-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0464.html" />
          <reference source="CVE" ref_id="CVE-2008-4546" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-4546.html" />
          <reference source="CVE" ref_id="CVE-2009-3793" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3793.html" />
          <reference source="CVE" ref_id="CVE-2010-1297" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1297.html" />
          <reference source="CVE" ref_id="CVE-2010-2160" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2160.html" />
          <reference source="CVE" ref_id="CVE-2010-2161" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2161.html" />
          <reference source="CVE" ref_id="CVE-2010-2162" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2162.html" />
          <reference source="CVE" ref_id="CVE-2010-2163" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2163.html" />
          <reference source="CVE" ref_id="CVE-2010-2164" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2164.html" />
          <reference source="CVE" ref_id="CVE-2010-2165" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2165.html" />
          <reference source="CVE" ref_id="CVE-2010-2166" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2166.html" />
          <reference source="CVE" ref_id="CVE-2010-2167" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2167.html" />
          <reference source="CVE" ref_id="CVE-2010-2169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2169.html" />
          <reference source="CVE" ref_id="CVE-2010-2170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2170.html" />
          <reference source="CVE" ref_id="CVE-2010-2171" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2171.html" />
          <reference source="CVE" ref_id="CVE-2010-2173" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2173.html" />
          <reference source="CVE" ref_id="CVE-2010-2174" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2174.html" />
          <reference source="CVE" ref_id="CVE-2010-2175" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2175.html" />
          <reference source="CVE" ref_id="CVE-2010-2176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2176.html" />
          <reference source="CVE" ref_id="CVE-2010-2177" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2177.html" />
          <reference source="CVE" ref_id="CVE-2010-2178" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2178.html" />
          <reference source="CVE" ref_id="CVE-2010-2179" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2179.html" />
          <reference source="CVE" ref_id="CVE-2010-2180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2180.html" />
          <reference source="CVE" ref_id="CVE-2010-2181" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2181.html" />
          <reference source="CVE" ref_id="CVE-2010-2182" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2182.html" />
          <reference source="CVE" ref_id="CVE-2010-2183" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2183.html" />
          <reference source="CVE" ref_id="CVE-2010-2184" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2184.html" />
          <reference source="CVE" ref_id="CVE-2010-2185" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2185.html" />
          <reference source="CVE" ref_id="CVE-2010-2186" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2186.html" />
          <reference source="CVE" ref_id="CVE-2010-2187" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2187.html" />
          <reference source="CVE" ref_id="CVE-2010-2188" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2188.html" />
    
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes multiple vulnerabilities in Adobe Flash Player. These
vulnerabilities are detailed on the Adobe security pages APSA10-01 and
APSB10-14, listed in the References section.

Multiple security flaws were found in the way flash-plugin displayed
certain SWF content. An attacker could use these flaws to create a
specially-crafted SWF file that would cause flash-plugin to crash or,
potentially, execute arbitrary code when the victim loaded a page
containing the specially-crafted SWF content. (CVE-2009-3793,
CVE-2010-1297, CVE-2010-2160, CVE-2010-2161, CVE-2010-2162, CVE-2010-2163,
CVE-2010-2164, CVE-2010-2165, CVE-2010-2166, CVE-2010-2167, CVE-2010-2169,
CVE-2010-2170, CVE-2010-2171, CVE-2010-2173, CVE-2010-2174, CVE-2010-2175,
CVE-2010-2176, CVE-2010-2177, CVE-2010-2178, CVE-2010-2180, CVE-2010-2181,
CVE-2010-2182, CVE-2010-2183, CVE-2010-2184, CVE-2010-2185, CVE-2010-2186,
CVE-2010-2187, CVE-2010-2188)

An input sanitization flaw was found in the way flash-plugin processed
certain URLs. An attacker could use this flaw to conduct cross-site
scripting (XSS) attacks if a victim were tricked into visiting a
specially-crafted web page. (CVE-2010-2179)

A denial of service flaw was found in the way flash-plugin processed
certain SWF content. An attacker could use this flaw to create a
specially-crafted SWF file that would cause flash-plugin to crash.
(CVE-2008-4546)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.1.53.64.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-11" />
        <updated date="2010-06-11" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-4546.html">CVE-2008-4546</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3793.html">CVE-2009-3793</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1297.html">CVE-2010-1297</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2160.html">CVE-2010-2160</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2161.html">CVE-2010-2161</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2162.html">CVE-2010-2162</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2163.html">CVE-2010-2163</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2164.html">CVE-2010-2164</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2165.html">CVE-2010-2165</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2166.html">CVE-2010-2166</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2167.html">CVE-2010-2167</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2169.html">CVE-2010-2169</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2170.html">CVE-2010-2170</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2171.html">CVE-2010-2171</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2173.html">CVE-2010-2173</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2174.html">CVE-2010-2174</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2175.html">CVE-2010-2175</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2176.html">CVE-2010-2176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2177.html">CVE-2010-2177</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2178.html">CVE-2010-2178</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2179.html">CVE-2010-2179</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2180.html">CVE-2010-2180</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2181.html">CVE-2010-2181</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2182.html">CVE-2010-2182</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2183.html">CVE-2010-2183</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2184.html">CVE-2010-2184</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2185.html">CVE-2010-2185</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2186.html">CVE-2010-2186</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2187.html">CVE-2010-2187</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2188.html">CVE-2010-2188</cve>
                <bugzilla href="http://bugzilla.redhat.com/467082" id="467082">CVE-2008-4546 flash-plugin: crash caused by SWF files with different SWF versions obtained from the same URL</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/600692" id="600692">CVE-2010-1297 acroread, flash-plugin: Arbitrary code execution by opening a specially-crafted PDF file with malicious SWF content (APSA10-01)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/602847" id="602847">flash-plugin: multiple security flaws (APSB10-14)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100464002" comment="flash-plugin is earlier than 0:10.1-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100102003" comment="flash-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100474" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0474: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0474-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0474.html" />
          <reference source="CVE" ref_id="CVE-2009-3726" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3726.html" />
          <reference source="CVE" ref_id="CVE-2010-1173" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1173.html" />
          <reference source="CVE" ref_id="CVE-2010-1437" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1437.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security fixes:

* a NULL pointer dereference flaw was found in the Linux kernel NFSv4
implementation. Several of the NFSv4 file locking functions failed to check
whether a file had been opened on the server before performing locking
operations on it. A local, unprivileged user on a system with an NFSv4
share mounted could possibly use this flaw to cause a kernel panic (denial
of service) or escalate their privileges. (CVE-2009-3726, Important)

* a flaw was found in the sctp_process_unk_param() function in the Linux
kernel Stream Control Transmission Protocol (SCTP) implementation. A remote
attacker could send a specially-crafted SCTP packet to an SCTP listening
port on a target system, causing a kernel panic (denial of service).
(CVE-2010-1173, Important)

* a race condition between finding a keyring by name and destroying a freed
keyring was found in the Linux kernel key management facility. A local,
unprivileged user could use this flaw to cause a kernel panic (denial of
service) or escalate their privileges. (CVE-2010-1437, Important)

Red Hat would like to thank Simon Vallet for responsibly reporting
CVE-2009-3726; and Jukka Taimisto and Olli Jarva of Codenomicon Ltd, Nokia
Siemens Networks, and Wind River on behalf of their customer, for
responsibly reporting CVE-2010-1173.

Bug fixes:

* RHBA-2007:0791 introduced a regression in the Journaling Block Device
(JBD). Under certain circumstances, removing a large file (such as 300 MB
or more) did not result in inactive memory being freed, leading to the
system having a large amount of inactive memory. Now, the memory is
correctly freed. (BZ#589155)

* the timer_interrupt() routine did not scale lost real ticks to logical
ticks correctly, possibly causing time drift for 64-bit Red Hat Enterprise
Linux 4 KVM (Kernel-based Virtual Machine) guests that were booted with the
"divider=x" kernel parameter set to a value greater than 1. "warning: many
lost ticks" messages may have been logged on the affected guest systems.
(BZ#590551)

* a bug could have prevented NFSv3 clients from having the most up-to-date
file attributes for files on a given NFSv3 file system. In cases where a
file type changed, such as if a file was removed and replaced with a
directory of the same name, the NFSv3 client may not have noticed this
change until stat(2) was called (for example, by running "ls -l").
(BZ#596372)

* RHBA-2007:0791 introduced bugs in the Linux kernel PCI-X subsystem. These
could have caused a system deadlock on some systems where the BIOS set the
default Maximum Memory Read Byte Count (MMRBC) to 4096, and that also use
the Intel PRO/1000 Linux driver, e1000. Errors such as "e1000: eth[x]:
e1000_clean_tx_irq: Detected Tx Unit Hang" were logged. (BZ#596374)

* an out of memory condition in a KVM guest, using the virtio-net network
driver and also under heavy network stress, could have resulted in
that guest being unable to receive network traffic. Users had to manually
remove and re-add the virtio_net module and restart the network service
before networking worked as expected. Such memory conditions no longer
prevent KVM guests receiving network traffic. (BZ#597310)

* when an SFQ qdisc that limited the queue size to two packets was added to
a network interface, sending traffic through that interface resulted in a
kernel crash. Such a qdisc no longer results in a kernel crash. (BZ#597312)

* when an NFS client opened a file with the O_TRUNC flag set, it received
a valid stateid, but did not use that stateid to perform the SETATTR call.
Such cases were rejected by Red Hat Enterprise Linux 4 NFS servers with an
"NFS4ERR_BAD_STATEID" error, possibly preventing some NFS clients from
writing files to an NFS file system. (BZ#597314)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-15" />
        <updated date="2010-06-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3726.html">CVE-2009-3726</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1173.html">CVE-2010-1173</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1437.html">CVE-2010-1437</cve>
                <bugzilla href="http://bugzilla.redhat.com/529227" id="529227">CVE-2009-3726 kernel: nfsv4: kernel panic in nfs4_proc_lock()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/584645" id="584645">CVE-2010-1173 kernel: sctp: crash due to malformed SCTPChunkInit packet</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/585094" id="585094">CVE-2010-1437 kernel: keyrings: find_keyring_by_name() can gain the freed keyring</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/589155" id="589155">jbd not releasing data buffers, causing high inactive meory in RHEL4.6 /proc/meminfo [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590551" id="590551">time drift due to incorrect accounting of lost ticks with VXTIME_PMTMR mode and VXTIME_TSC mode if 'tick_divider' > 1 [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/596372" id="596372">NFSv3 file attributes are not updated by READDIRPLUS reply [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/596374" id="596374">e1000_clean_tx_irq: Detected Tx Unit Hang [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/597310" id="597310">Lost the network in a KVM VM on top of 4.9 [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/597312" id="597312">SFQ qdisc crashes with limit of 2 packets [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/597314" id="597314">cthon test5 failing on nfsv4 with rhel6 client vs. rhel4 server [rhel-4.8.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474002" comment="kernel is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474022" comment="kernel-doc is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474004" comment="kernel-devel is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474008" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474018" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474014" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474012" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474010" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474006" comment="kernel-xenU is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474020" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100474016" comment="kernel-smp is earlier than 0:2.6.9-89.0.26.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100475" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0475: sudo security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0475-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0475.html" />
          <reference source="CVE" ref_id="CVE-2010-1646" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1646.html" />
    
    <description>The sudo (superuser do) utility allows system administrators to give
certain users the ability to run commands as root.

A flaw was found in the way sudo handled the presence of duplicated
environment variables. A local user authorized to run commands using sudo
could use this flaw to set additional values for the environment variables
set by sudo, which could result in those values being used by the executed
command instead of the values set by sudo. This could possibly lead to
certain intended restrictions being bypassed, such as the secure_path
setting. (CVE-2010-1646)

Red Hat would like to thank Anders Kaseorg and Evan Broder of Ksplice, Inc.
for responsibly reporting this issue.

Users of sudo should upgrade to this updated package, which contains a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-15" />
        <updated date="2010-06-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1646.html">CVE-2010-1646</cve>
                <bugzilla href="http://bugzilla.redhat.com/598154" id="598154">CVE-2010-1646 sudo: insufficient environment sanitization issue</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100475002" comment="sudo is earlier than 0:1.7.2p1-7.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100122003" comment="sudo is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100488" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0488: samba and samba3x security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0488-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0488.html" />
          <reference source="CVE" ref_id="CVE-2010-2063" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2063.html" />
    
    <description>Samba is a suite of programs used by machines to share files, printers, and
other information.

An input sanitization flaw was found in the way Samba parsed client data. A
malicious client could send a specially-crafted SMB packet to the Samba
server, resulting in arbitrary code execution with the privileges of the
Samba server (smbd). (CVE-2010-2063)

Red Hat would like to thank the Samba team for responsibly reporting this
issue. Upstream acknowledges Jun Mao as the original reporter.

Users of Samba are advised to upgrade to these updated packages, which
contain a backported patch to resolve this issue. After installing this
update, the smb service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-16" />
        <updated date="2010-06-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2063.html">CVE-2010-2063</cve>
                <bugzilla href="http://bugzilla.redhat.com/601419" id="601419">CVE-2010-2063 samba: memory corruption vulnerability</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:rhel_eus</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488008" comment="libsmbclient is earlier than 0:3.0.33-3.29.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488009" comment="libsmbclient is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488004" comment="samba-client is earlier than 0:3.0.33-3.29.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488005" comment="samba-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488010" comment="libsmbclient-devel is earlier than 0:3.0.33-3.29.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488011" comment="libsmbclient-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488006" comment="samba-common is earlier than 0:3.0.33-3.29.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488007" comment="samba-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488002" comment="samba is earlier than 0:3.0.33-3.29.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488003" comment="samba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488012" comment="samba-swat is earlier than 0:3.0.33-3.29.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488013" comment="samba-swat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488024" comment="tdb-tools is earlier than 0:1.1.2-52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488025" comment="tdb-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488030" comment="samba3x-swat is earlier than 0:3.3.8-0.52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488031" comment="samba3x-swat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488036" comment="libtdb is earlier than 0:1.1.2-52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488037" comment="libtdb is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488028" comment="samba3x-client is earlier than 0:3.3.8-0.52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488029" comment="samba3x-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488020" comment="samba3x-doc is earlier than 0:3.3.8-0.52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488021" comment="samba3x-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488018" comment="libtalloc-devel is earlier than 0:1.2.0-52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488019" comment="libtalloc-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488038" comment="samba3x-winbind is earlier than 0:3.3.8-0.52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488039" comment="samba3x-winbind is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488014" comment="samba3x is earlier than 0:3.3.8-0.52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488015" comment="samba3x is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488032" comment="samba3x-winbind-devel is earlier than 0:3.3.8-0.52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488033" comment="samba3x-winbind-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488034" comment="libtalloc is earlier than 0:1.2.0-52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488035" comment="libtalloc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488026" comment="samba3x-domainjoin-gui is earlier than 0:3.3.8-0.52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488027" comment="samba3x-domainjoin-gui is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488022" comment="libtdb-devel is earlier than 0:1.1.2-52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488023" comment="libtdb-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488016" comment="samba3x-common is earlier than 0:3.3.8-0.52.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488017" comment="samba3x-common is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488047" comment="samba-client is earlier than 0:3.0.9-1.3E.17" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488048" comment="samba-client is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488045" comment="samba-common is earlier than 0:3.0.9-1.3E.17" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488046" comment="samba-common is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488041" comment="samba is earlier than 0:3.0.9-1.3E.17" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488042" comment="samba is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488043" comment="samba-swat is earlier than 0:3.0.9-1.3E.17" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488044" comment="samba-swat is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488052" comment="samba-client is earlier than 0:3.0.33-0.19.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488048" comment="samba-client is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488053" comment="samba-common is earlier than 0:3.0.33-0.19.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488046" comment="samba-common is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488050" comment="samba is earlier than 0:3.0.33-0.19.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488042" comment="samba is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100488051" comment="samba-swat is earlier than 0:3.0.33-0.19.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488044" comment="samba-swat is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100489" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0489: java-1.5.0-ibm security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0489-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0489.html" />
          <reference source="CVE" ref_id="CVE-2010-0840" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0840.html" />
          <reference source="CVE" ref_id="CVE-2010-0841" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0841.html" />
          <reference source="CVE" ref_id="CVE-2010-0842" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0842.html" />
          <reference source="CVE" ref_id="CVE-2010-0843" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0843.html" />
          <reference source="CVE" ref_id="CVE-2010-0844" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0844.html" />
          <reference source="CVE" ref_id="CVE-2010-0846" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0846.html" />
          <reference source="CVE" ref_id="CVE-2010-0847" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0847.html" />
          <reference source="CVE" ref_id="CVE-2010-0848" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0848.html" />
          <reference source="CVE" ref_id="CVE-2010-0849" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0849.html" />
    
    <description>The IBM 1.5.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit. Detailed
vulnerability descriptions are linked from the IBM "Security alerts" page,
listed in the References section. (CVE-2010-0840, CVE-2010-0841,
CVE-2010-0842, CVE-2010-0843, CVE-2010-0844, CVE-2010-0846, CVE-2010-0847,
CVE-2010-0848, CVE-2010-0849)

All users of java-1.5.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.5.0 SR11-FP2 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-17" />
        <updated date="2010-06-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0840.html">CVE-2010-0840</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0841.html">CVE-2010-0841</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0842.html">CVE-2010-0842</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0843.html">CVE-2010-0843</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0844.html">CVE-2010-0844</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0846.html">CVE-2010-0846</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0847.html">CVE-2010-0847</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0848.html">CVE-2010-0848</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0849.html">CVE-2010-0849</cve>
                <bugzilla href="http://bugzilla.redhat.com/575846" id="575846">CVE-2010-0840 OpenJDK Applet Trusted Methods Chaining Privilege Escalation Vulnerability (6904691)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575854" id="575854">CVE-2010-0841 OpenJDK JPEGImageReader stepX Integer Overflow Vulnerability (6909597)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575865" id="575865">CVE-2010-0848 OpenJDK AWT Library Invalid Index Vulnerability (6914823)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575871" id="575871">CVE-2010-0847 OpenJDK ImagingLib arbitrary code execution vulnerability (6914866)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578430" id="578430">CVE-2010-0846 JDK unspecified vulnerability in ImageIO component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578432" id="578432">CVE-2010-0849 JDK unspecified vulnerability in Java2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578436" id="578436">CVE-2010-0839 CVE-2010-0842 CVE-2010-0843 CVE-2010-0844 JDK multiple unspecified vulnerabilities</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100489008" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.11.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130007" comment="java-1.5.0-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100489002" comment="java-1.5.0-ibm is earlier than 1:1.5.0.11.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130003" comment="java-1.5.0-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100489016" comment="java-1.5.0-ibm-accessibility is earlier than 1:1.5.0.11.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130005" comment="java-1.5.0-ibm-accessibility is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100489004" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.11.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130009" comment="java-1.5.0-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100489010" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.11.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130017" comment="java-1.5.0-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100489006" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.11.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130011" comment="java-1.5.0-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100489014" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.11.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130013" comment="java-1.5.0-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100489012" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.11.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130015" comment="java-1.5.0-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100490" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0490: cups security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0490-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0490.html" />
          <reference source="CVE" ref_id="CVE-2010-0540" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0540.html" />
          <reference source="CVE" ref_id="CVE-2010-0542" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0542.html" />
          <reference source="CVE" ref_id="CVE-2010-1748" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1748.html" />
    
    <description>The Common UNIX Printing System (CUPS) provides a portable printing layer
for UNIX operating systems. The CUPS "texttops" filter converts text files
to PostScript.

A missing memory allocation failure check flaw, leading to a NULL pointer
dereference, was found in the CUPS "texttops" filter. An attacker could
create a malicious text file that would cause "texttops" to crash or,
potentially, execute arbitrary code as the "lp" user if the file was
printed. (CVE-2010-0542)

A Cross-Site Request Forgery (CSRF) issue was found in the CUPS web
interface. If a remote attacker could trick a user, who is logged into the
CUPS web interface as an administrator, into visiting a specially-crafted
website, the attacker could reconfigure and disable CUPS, and gain access
to print jobs and system files. (CVE-2010-0540)

Note: As a result of the fix for CVE-2010-0540, cookies must now be enabled
in your web browser to use the CUPS web interface.

An uninitialized memory read issue was found in the CUPS web interface. If
an attacker had access to the CUPS web interface, they could use a
specially-crafted URL to leverage this flaw to read a limited amount of
memory from the cupsd process, possibly obtaining sensitive information.
(CVE-2010-1748)

Red Hat would like to thank the Apple Product Security team for responsibly
reporting these issues. Upstream acknowledges regenrecht as the original
reporter of CVE-2010-0542; Adrian 'pagvac' Pastor of GNUCITIZEN and Tim
Starling as the original reporters of CVE-2010-0540; and Luca Carettoni as
the original reporter of CVE-2010-1748.

Users of cups are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. After installing this
update, the cupsd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-17" />
        <updated date="2010-06-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0540.html">CVE-2010-0540</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0542.html">CVE-2010-0542</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1748.html">CVE-2010-1748</cve>
                <bugzilla href="http://bugzilla.redhat.com/587746" id="587746">CVE-2010-0542 CUPS: texttops unchecked memory allocation failure leading to NULL pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/588805" id="588805">CVE-2010-0540 CUPS administrator web interface CSRF</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/591983" id="591983">CVE-2010-1748 cups: web interface memory disclosure</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490004" comment="cups-lpd is earlier than 1:1.3.7-18.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129005" comment="cups-lpd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490008" comment="cups-devel is earlier than 1:1.3.7-18.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129007" comment="cups-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490006" comment="cups-libs is earlier than 1:1.3.7-18.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129009" comment="cups-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490002" comment="cups is earlier than 1:1.3.7-18.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129003" comment="cups is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490015" comment="cups-devel is earlier than 1:1.1.17-13.3.65" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490016" comment="cups-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490013" comment="cups-libs is earlier than 1:1.1.17-13.3.65" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490014" comment="cups-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490011" comment="cups is earlier than 1:1.1.17-13.3.65" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490012" comment="cups is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490019" comment="cups-devel is earlier than 1:1.1.22-0.rc1.9.32.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490016" comment="cups-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490020" comment="cups-libs is earlier than 1:1.1.22-0.rc1.9.32.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490014" comment="cups-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100490018" comment="cups is earlier than 1:1.1.22-0.rc1.9.32.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490012" comment="cups is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100499" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0499: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0499-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0499.html" />
          <reference source="CVE" ref_id="CVE-2010-0163" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0163.html" />
          <reference source="CVE" ref_id="CVE-2010-1197" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1197.html" />
          <reference source="CVE" ref_id="CVE-2010-1198" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1198.html" />
          <reference source="CVE" ref_id="CVE-2010-1199" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1199.html" />
          <reference source="CVE" ref_id="CVE-2010-1200" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1200.html" />
    
    <description>SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause SeaMonkey to crash or,
potentially, execute arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2010-1200)

A flaw was found in the way browser plug-ins interact. It was possible for
a plug-in to reference the freed memory from a different plug-in, resulting
in the execution of arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2010-1198)

An integer overflow flaw was found in the processing of malformed web
content. A web page containing malicious content could cause SeaMonkey to
crash or, potentially, execute arbitrary code with the privileges of the
user running SeaMonkey. (CVE-2010-1199)

A flaw was found in the way SeaMonkey processed mail attachments. A
specially-crafted mail message could cause SeaMonkey to crash.
(CVE-2010-0163)

A flaw was found in the way SeaMonkey handled the "Content-Disposition:
attachment" HTTP header when the "Content-Type: multipart" HTTP header was
also present. A website that allows arbitrary uploads and relies on the
"Content-Disposition: attachment" HTTP header to prevent content from being
displayed inline, could be used by an attacker to serve malicious content
to users. (CVE-2010-1197)

All SeaMonkey users should upgrade to these updated packages, which correct
these issues. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-22" />
        <updated date="2010-06-22" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0163.html">CVE-2010-0163</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1197.html">CVE-2010-1197</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1198.html">CVE-2010-1198</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1199.html">CVE-2010-1199</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1200.html">CVE-2010-1200</cve>
                <bugzilla href="http://bugzilla.redhat.com/576391" id="576391">CVE-2010-0163 seamonkey/thunderbird: crash when indexing certain messages with attachments</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590804" id="590804">CVE-2010-1200 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590828" id="590828">CVE-2010-1198 Mozilla Freed object reuse across plugin instances</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590833" id="590833">CVE-2010-1199 Mozilla Integer Overflow in XSLT Node Sorting</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590850" id="590850">CVE-2010-1197 Mozilla Content-Disposition: attachment ignored if Content-Type: multipart also present</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499008" comment="seamonkey-nspr is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113013" comment="seamonkey-nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499016" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499004" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113019" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499006" comment="seamonkey-mail is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499002" comment="seamonkey is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499020" comment="seamonkey-devel is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499018" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113011" comment="seamonkey-nss-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499014" comment="seamonkey-chat is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499012" comment="seamonkey-nss is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113005" comment="seamonkey-nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499010" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.55.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499028" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-58.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499026" comment="seamonkey-mail is earlier than 0:1.0.9-58.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499023" comment="seamonkey is earlier than 0:1.0.9-58.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499027" comment="seamonkey-devel is earlier than 0:1.0.9-58.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499024" comment="seamonkey-chat is earlier than 0:1.0.9-58.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100499025" comment="seamonkey-js-debugger is earlier than 0:1.0.9-58.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100500" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0500: firefox security, bug fix, and enhancement update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0500-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0500.html" />
          <reference source="CVE" ref_id="CVE-2008-5913" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-5913.html" />
          <reference source="CVE" ref_id="CVE-2009-5017" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-5017.html" />
          <reference source="CVE" ref_id="CVE-2010-0182" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0182.html" />
          <reference source="CVE" ref_id="CVE-2010-1121" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1121.html" />
          <reference source="CVE" ref_id="CVE-2010-1125" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1125.html" />
          <reference source="CVE" ref_id="CVE-2010-1196" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1196.html" />
          <reference source="CVE" ref_id="CVE-2010-1197" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1197.html" />
          <reference source="CVE" ref_id="CVE-2010-1198" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1198.html" />
          <reference source="CVE" ref_id="CVE-2010-1199" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1199.html" />
          <reference source="CVE" ref_id="CVE-2010-1200" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1200.html" />
          <reference source="CVE" ref_id="CVE-2010-1202" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1202.html" />
          <reference source="CVE" ref_id="CVE-2010-1203" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1203.html" />
    
    <description>Mozilla Firefox is an open source web browser.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-1121, CVE-2010-1200, CVE-2010-1202, CVE-2010-1203)

A flaw was found in the way browser plug-ins interact. It was possible for
a plug-in to reference the freed memory from a different plug-in, resulting
in the execution of arbitrary code with the privileges of the user running
Firefox. (CVE-2010-1198)

Several integer overflow flaws were found in the processing of malformed
web content. A web page containing malicious content could cause Firefox to
crash or, potentially, execute arbitrary code with the privileges of the
user running Firefox. (CVE-2010-1196, CVE-2010-1199)

A focus stealing flaw was found in the way Firefox handled focus changes. A
malicious website could use this flaw to steal sensitive data from a user,
such as usernames and passwords. (CVE-2010-1125)

A flaw was found in the way Firefox handled the "Content-Disposition:
attachment" HTTP header when the "Content-Type: multipart" HTTP header was
also present. A website that allows arbitrary uploads and relies on the
"Content-Disposition: attachment" HTTP header to prevent content from being
displayed inline, could be used by an attacker to serve malicious content
to users. (CVE-2010-1197)

A flaw was found in the Firefox Math.random() function. This function could
be used to identify a browsing session and track a user across different
websites. (CVE-2008-5913)

A flaw was found in the Firefox XML document loading security checks.
Certain security checks were not being called when an XML document was
loaded. This could possibly be leveraged later by an attacker to load
certain resources that violate the security policies of the browser or its
add-ons. Note that this issue cannot be exploited by only loading an XML
document. (CVE-2010-0182)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.6.4. You can find a link to the Mozilla advisories
in the References section of this erratum.

This erratum upgrades Firefox from version 3.0.19 to version 3.6.4, and as
such, contains multiple bug fixes and numerous enhancements. Space
precludes documenting these changes in this advisory. For details
concerning these changes, refer to the Firefox Release Notes links in the
References section of this erratum.

Important: Firefox 3.6.4 is not completely backwards-compatible with all
Mozilla Add-ons and Firefox plug-ins that worked with Firefox 3.0.19.
Firefox 3.6 checks compatibility on first-launch, and, depending on the
individual configuration and the installed Add-ons and plug-ins, may
disable said Add-ons and plug-ins, or attempt to check for updates and
upgrade them. Add-ons and plug-ins may have to be manually updated.

All Firefox users should upgrade to this updated package, which contains
Firefox version 3.6.4. After installing the update, Firefox must be
restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-22" />
        <updated date="2010-06-22" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-5913.html">CVE-2008-5913</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-5017.html">CVE-2009-5017</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0182.html">CVE-2010-0182</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1121.html">CVE-2010-1121</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1125.html">CVE-2010-1125</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1196.html">CVE-2010-1196</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1197.html">CVE-2010-1197</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1198.html">CVE-2010-1198</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1199.html">CVE-2010-1199</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1200.html">CVE-2010-1200</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1202.html">CVE-2010-1202</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1203.html">CVE-2010-1203</cve>
                <bugzilla href="http://bugzilla.redhat.com/480938" id="480938">CVE-2008-5913 mozilla: in-session phishing attack</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/577029" id="577029">CVE-2010-1121 firefox: arbitrary code execution via memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/577584" id="577584">CVE-2010-1125 firefox: keystrokes sent to hidden frame rather than visible frame due to javascript flaw</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/586580" id="586580">CVE-2010-0182 mozilla: XMLDocument::load() doesn't check nsIContentPolicy (MFSA 2010-24)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590804" id="590804">CVE-2010-1200 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590810" id="590810">CVE-2010-1202 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590816" id="590816">CVE-2010-1203 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590828" id="590828">CVE-2010-1198 Mozilla Freed object reuse across plugin instances</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590830" id="590830">CVE-2010-1196 Mozilla Heap buffer overflow in nsGenericDOMDataNode::SetTextInternal</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590833" id="590833">CVE-2010-1199 Mozilla Integer Overflow in XSLT Node Sorting</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590850" id="590850">CVE-2010-1197 Mozilla Content-Disposition: attachment ignored if Content-Type: multipart also present</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100500002" comment="firefox is earlier than 0:3.6.4-8.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100501" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0501: firefox security, bug fix, and enhancement update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0501-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0501.html" />
          <reference source="CVE" ref_id="CVE-2008-5913" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-5913.html" />
          <reference source="CVE" ref_id="CVE-2009-5017" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-5017.html" />
          <reference source="CVE" ref_id="CVE-2010-0182" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0182.html" />
          <reference source="CVE" ref_id="CVE-2010-1121" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1121.html" />
          <reference source="CVE" ref_id="CVE-2010-1125" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1125.html" />
          <reference source="CVE" ref_id="CVE-2010-1196" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1196.html" />
          <reference source="CVE" ref_id="CVE-2010-1197" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1197.html" />
          <reference source="CVE" ref_id="CVE-2010-1198" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1198.html" />
          <reference source="CVE" ref_id="CVE-2010-1199" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1199.html" />
          <reference source="CVE" ref_id="CVE-2010-1200" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1200.html" />
          <reference source="CVE" ref_id="CVE-2010-1202" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1202.html" />
          <reference source="CVE" ref_id="CVE-2010-1203" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1203.html" />
    
    <description>Mozilla Firefox is an open source web browser.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-1121, CVE-2010-1200, CVE-2010-1202, CVE-2010-1203)

A flaw was found in the way browser plug-ins interact. It was possible for
a plug-in to reference the freed memory from a different plug-in, resulting
in the execution of arbitrary code with the privileges of the user running
Firefox. (CVE-2010-1198)

Several integer overflow flaws were found in the processing of malformed
web content. A web page containing malicious content could cause Firefox to
crash or, potentially, execute arbitrary code with the privileges of the
user running Firefox. (CVE-2010-1196, CVE-2010-1199)

A focus stealing flaw was found in the way Firefox handled focus changes. A
malicious website could use this flaw to steal sensitive data from a user,
such as usernames and passwords. (CVE-2010-1125)

A flaw was found in the way Firefox handled the "Content-Disposition:
attachment" HTTP header when the "Content-Type: multipart" HTTP header was
also present. A website that allows arbitrary uploads and relies on the
"Content-Disposition: attachment" HTTP header to prevent content from being
displayed inline, could be used by an attacker to serve malicious content
to users. (CVE-2010-1197)

A flaw was found in the Firefox Math.random() function. This function could
be used to identify a browsing session and track a user across different
websites. (CVE-2008-5913)

A flaw was found in the Firefox XML document loading security checks.
Certain security checks were not being called when an XML document was
loaded. This could possibly be leveraged later by an attacker to load
certain resources that violate the security policies of the browser or its
add-ons. Note that this issue cannot be exploited by only loading an XML
document. (CVE-2010-0182)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.6.4. You can find a link to the Mozilla advisories
in the References section of this erratum.

This erratum upgrades Firefox from version 3.0.19 to version 3.6.4. Due to
the requirements of Firefox 3.6.4, this erratum also provides a number of
other updated packages, including esc, totem, and yelp.

This erratum also contains multiple bug fixes and numerous enhancements.
Space precludes documenting these changes in this advisory. For details
concerning these changes, refer to the Firefox Release Notes links in the
References section of this erratum.

Important: Firefox 3.6.4 is not completely backwards-compatible with all
Mozilla Add-ons and Firefox plug-ins that worked with Firefox 3.0.19.
Firefox 3.6 checks compatibility on first-launch, and, depending on the
individual configuration and the installed Add-ons and plug-ins, may
disable said Add-ons and plug-ins, or attempt to check for updates and
upgrade them. Add-ons and plug-ins may have to be manually updated.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.6.4. After installing the update, Firefox must be
restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-22" />
        <updated date="2010-06-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-5913.html">CVE-2008-5913</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-5017.html">CVE-2009-5017</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0182.html">CVE-2010-0182</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1121.html">CVE-2010-1121</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1125.html">CVE-2010-1125</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1196.html">CVE-2010-1196</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1197.html">CVE-2010-1197</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1198.html">CVE-2010-1198</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1199.html">CVE-2010-1199</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1200.html">CVE-2010-1200</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1202.html">CVE-2010-1202</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1203.html">CVE-2010-1203</cve>
                <bugzilla href="http://bugzilla.redhat.com/480938" id="480938">CVE-2008-5913 mozilla: in-session phishing attack</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/577029" id="577029">CVE-2010-1121 firefox: arbitrary code execution via memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/577584" id="577584">CVE-2010-1125 firefox: keystrokes sent to hidden frame rather than visible frame due to javascript flaw</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/586580" id="586580">CVE-2010-0182 mozilla: XMLDocument::load() doesn't check nsIContentPolicy (MFSA 2010-24)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590804" id="590804">CVE-2010-1200 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590810" id="590810">CVE-2010-1202 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590816" id="590816">CVE-2010-1203 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590828" id="590828">CVE-2010-1198 Mozilla Freed object reuse across plugin instances</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590830" id="590830">CVE-2010-1196 Mozilla Heap buffer overflow in nsGenericDOMDataNode::SetTextInternal</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590833" id="590833">CVE-2010-1199 Mozilla Integer Overflow in XSLT Node Sorting</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590850" id="590850">CVE-2010-1197 Mozilla Content-Disposition: attachment ignored if Content-Type: multipart also present</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501002" comment="devhelp is earlier than 0:0.12-21.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501003" comment="devhelp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501004" comment="devhelp-devel is earlier than 0:0.12-21.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501005" comment="devhelp-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501010" comment="gnome-python2-gtkhtml2 is earlier than 0:2.14.2-7.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501011" comment="gnome-python2-gtkhtml2 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501014" comment="gnome-python2-libegg is earlier than 0:2.14.2-7.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501015" comment="gnome-python2-libegg is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501008" comment="gnome-python2-gtkmozembed is earlier than 0:2.14.2-7.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501009" comment="gnome-python2-gtkmozembed is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501012" comment="gnome-python2-gtkspell is earlier than 0:2.14.2-7.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501013" comment="gnome-python2-gtkspell is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501006" comment="gnome-python2-extras is earlier than 0:2.14.2-7.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501007" comment="gnome-python2-extras is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501016" comment="esc is earlier than 0:1.1.0-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501017" comment="esc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501018" comment="totem is earlier than 0:2.16.7-7.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501019" comment="totem is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501022" comment="totem-mozplugin is earlier than 0:2.16.7-7.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501023" comment="totem-mozplugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501020" comment="totem-devel is earlier than 0:2.16.7-7.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501021" comment="totem-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501024" comment="yelp is earlier than 0:2.16.0-26.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100501025" comment="yelp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501026" comment="firefox is earlier than 0:3.6.4-8.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112009" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501028" comment="xulrunner is earlier than 0:1.9.2.4-10.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100501030" comment="xulrunner-devel is earlier than 0:1.9.2.4-10.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100503" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0503: acroread security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0503-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0503.html" />
          <reference source="CVE" ref_id="CVE-2010-1240" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1240.html" />
          <reference source="CVE" ref_id="CVE-2010-1285" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1285.html" />
          <reference source="CVE" ref_id="CVE-2010-1295" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1295.html" />
          <reference source="CVE" ref_id="CVE-2010-1297" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1297.html" />
          <reference source="CVE" ref_id="CVE-2010-2168" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2168.html" />
          <reference source="CVE" ref_id="CVE-2010-2201" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2201.html" />
          <reference source="CVE" ref_id="CVE-2010-2202" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2202.html" />
          <reference source="CVE" ref_id="CVE-2010-2203" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2203.html" />
          <reference source="CVE" ref_id="CVE-2010-2204" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2204.html" />
          <reference source="CVE" ref_id="CVE-2010-2205" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2205.html" />
          <reference source="CVE" ref_id="CVE-2010-2206" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2206.html" />
          <reference source="CVE" ref_id="CVE-2010-2207" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2207.html" />
          <reference source="CVE" ref_id="CVE-2010-2208" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2208.html" />
          <reference source="CVE" ref_id="CVE-2010-2209" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2209.html" />
          <reference source="CVE" ref_id="CVE-2010-2210" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2210.html" />
          <reference source="CVE" ref_id="CVE-2010-2211" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2211.html" />
          <reference source="CVE" ref_id="CVE-2010-2212" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2212.html" />
    
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes multiple vulnerabilities in Adobe Reader. These
vulnerabilities are detailed on the Adobe security pages APSA10-01 and
APSB10-15, listed in the References section. A specially-crafted PDF file
could cause Adobe Reader to crash or, potentially, execute arbitrary code
as the user running Adobe Reader when opened. (CVE-2010-1240,
CVE-2010-1285, CVE-2010-1295, CVE-2010-1297, CVE-2010-2168, CVE-2010-2201,
CVE-2010-2202, CVE-2010-2203, CVE-2010-2204, CVE-2010-2205, CVE-2010-2206,
CVE-2010-2207, CVE-2010-2208, CVE-2010-2209, CVE-2010-2210, CVE-2010-2211,
CVE-2010-2212)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 9.3.3, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-06-30" />
        <updated date="2010-06-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1240.html">CVE-2010-1240</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1285.html">CVE-2010-1285</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1295.html">CVE-2010-1295</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1297.html">CVE-2010-1297</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2168.html">CVE-2010-2168</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2201.html">CVE-2010-2201</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2202.html">CVE-2010-2202</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2203.html">CVE-2010-2203</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2204.html">CVE-2010-2204</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2205.html">CVE-2010-2205</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2206.html">CVE-2010-2206</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2207.html">CVE-2010-2207</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2208.html">CVE-2010-2208</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2209.html">CVE-2010-2209</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2210.html">CVE-2010-2210</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2211.html">CVE-2010-2211</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2212.html">CVE-2010-2212</cve>
                <bugzilla href="http://bugzilla.redhat.com/600692" id="600692">CVE-2010-1297 acroread, flash-plugin: Arbitrary code execution by opening a specially-crafted PDF file with malicious SWF content (APSA10-01)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/609203" id="609203">acroread: multiple code execution flaws (APSB10-15)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100503004" comment="acroread-plugin is earlier than 0:9.3.3-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100503002" comment="acroread is earlier than 0:9.3.3-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100504" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0504: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0504-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0504.html" />
          <reference source="CVE" ref_id="CVE-2010-0291" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0291.html" />
          <reference source="CVE" ref_id="CVE-2010-0622" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0622.html" />
          <reference source="CVE" ref_id="CVE-2010-1087" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1087.html" />
          <reference source="CVE" ref_id="CVE-2010-1088" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1088.html" />
          <reference source="CVE" ref_id="CVE-2010-1173" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1173.html" />
          <reference source="CVE" ref_id="CVE-2010-1187" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1187.html" />
          <reference source="CVE" ref_id="CVE-2010-1436" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1436.html" />
          <reference source="CVE" ref_id="CVE-2010-1437" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1437.html" />
          <reference source="CVE" ref_id="CVE-2010-1641" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1641.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* multiple flaws were found in the mmap and mremap implementations. A local
user could use these flaws to cause a local denial of service or escalate
their privileges. (CVE-2010-0291, Important)

* a NULL pointer dereference flaw was found in the Fast Userspace Mutexes
(futexes) implementation. The unlock code path did not check if the futex
value associated with pi_state->owner had been modified. A local user could
use this flaw to modify the futex value, possibly leading to a denial of
service or privilege escalation when the pi_state->owner pointer is
dereferenced. (CVE-2010-0622, Important)

* a NULL pointer dereference flaw was found in the Linux kernel Network
File System (NFS) implementation. A local user on a system that has an
NFS-mounted file system could use this flaw to cause a denial of service or
escalate their privileges on that system. (CVE-2010-1087, Important)

* a flaw was found in the sctp_process_unk_param() function in the Linux
kernel Stream Control Transmission Protocol (SCTP) implementation. A remote
attacker could send a specially-crafted SCTP packet to an SCTP listening
port on a target system, causing a kernel panic (denial of service).
(CVE-2010-1173, Important)

* a flaw was found in the Linux kernel Transparent Inter-Process
Communication protocol (TIPC) implementation. If a client application, on a
local system where the tipc module is not yet in network mode, attempted to
send a message to a remote TIPC node, it would dereference a NULL pointer
on the local system, causing a kernel panic (denial of service).
(CVE-2010-1187, Important)

* a buffer overflow flaw was found in the Linux kernel Global File System 2
(GFS2) implementation. In certain cases, a quota could be written past the
end of a memory page, causing memory corruption, leaving the quota stored
on disk in an invalid state. A user with write access to a GFS2 file system
could trigger this flaw to cause a kernel crash (denial of service) or
escalate their privileges on the GFS2 server. This issue can only be
triggered if the GFS2 file system is mounted with the "quota=on" or
"quota=account" mount option. (CVE-2010-1436, Important)

* a race condition between finding a keyring by name and destroying a freed
keyring was found in the Linux kernel key management facility. A local user
could use this flaw to cause a kernel panic (denial of service) or escalate
their privileges. (CVE-2010-1437, Important)

* a flaw was found in the link_path_walk() function in the Linux kernel.
Using the file descriptor returned by the open() function with the
O_NOFOLLOW flag on a subordinate NFS-mounted file system, could result in a
NULL pointer dereference, causing a denial of service or privilege
escalation. (CVE-2010-1088, Moderate)

* a missing permission check was found in the gfs2_set_flags() function in
the Linux kernel GFS2 implementation. A local user could use this flaw to
change certain file attributes of files, on a GFS2 file system, that they
do not own. (CVE-2010-1641, Low)

Red Hat would like to thank Jukka Taimisto and Olli Jarva of Codenomicon
Ltd, Nokia Siemens Networks, and Wind River on behalf of their customer,
for responsibly reporting CVE-2010-1173; Mario Mikocevic for responsibly
reporting CVE-2010-1436; and Dan Rosenberg for responsibly reporting
CVE-2010-1641.

This update also fixes several bugs. Documentation for these bug fixes will
be available shortly from
http://www.redhat.com/docs/en-US/errata/RHSA-2010-0504/Kernel_Security_Update/index.html

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-01" />
        <updated date="2010-07-01" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0291.html">CVE-2010-0291</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0622.html">CVE-2010-0622</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1087.html">CVE-2010-1087</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1088.html">CVE-2010-1088</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1173.html">CVE-2010-1173</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1187.html">CVE-2010-1187</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1436.html">CVE-2010-1436</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1437.html">CVE-2010-1437</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1641.html">CVE-2010-1641</cve>
                <bugzilla href="http://bugzilla.redhat.com/556703" id="556703">CVE-2010-0291 kernel: untangle the do_mremap()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/563091" id="563091">CVE-2010-0622 kernel: futex: Handle user space corruption gracefully</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/567184" id="567184">CVE-2010-1087 kernel: NFS: Fix an Oops when truncating a file</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/567813" id="567813">CVE-2010-1088 kernel: fix LOOKUP_FOLLOW on automount "symlinks"</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578057" id="578057">CVE-2010-1187 kernel: tipc: Fix oops on send prior to entering networked mode</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/584645" id="584645">CVE-2010-1173 kernel: sctp: crash due to malformed SCTPChunkInit packet</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/585094" id="585094">CVE-2010-1437 kernel: keyrings: find_keyring_by_name() can gain the freed keyring</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/586006" id="586006">CVE-2010-1436 kernel: gfs2 buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/587957" id="587957">Linux VM hangs while hot adding memory in VMware [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/588219" id="588219">25% performance regression of concurrent O_DIRECT writes. [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/591493" id="591493">[Intel 5.6 Bug] Fix initialization of wakeup flags for e1000 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/591611" id="591611">virtio balloon should not use pages from kernel's reserve pools for fill requests [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/592844" id="592844">RHEL5: tg3: 'SIOCSIFFLAGS: Invalid argument' setting IP [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/592846" id="592846">missing power_meter release() function [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/594054" id="594054">[5.5] SFQ qdisc crashes with limit of 2 packets [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/594057" id="594057">[RHEL5] bonding mode 0 doesn't resend IGMP after a failure [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/594061" id="594061">nfs: sys_read  sometimes returns -EIO [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/595579" id="595579">CVE-2010-1641 kernel: GFS2: The setflags ioctl() doesn't check file ownership</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/596384" id="596384">VFS: Busy inodes after unmount issue. [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/596385" id="596385">implement dev_disable_lro for RHEL5 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/598355" id="598355">[5.5] SCTP: Check if the file structure is valid before checking the non-blocking flag [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/599332" id="599332">e1000 and e1000e driver behaviour differences [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/599730" id="599730">fasync_helper patch causing problems with GPFS [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/599734" id="599734">should set ISVM bit (ECX:31) for CPUID leaf 0x00000001 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/599737" id="599737">vm.drop_caches corrupts hugepages and causes Oracle Database ORA-600 crashes [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/599739" id="599739">PG_error bit is never cleared, even when a fresh I/O to the page succeeds [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/600215" id="600215">[RHEL5] Netfilter modules unloading hangs [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/600498" id="600498">netconsole fails with tg3 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/601080" id="601080">Timedrift on VM with pv_clock enabled, causing system hangs and sporadic time behaviour [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/601090" id="601090">time drift due to incorrect accounting of lost ticks with VXTIME_PMTMR mode and VXTIME_TSC mode if 'tick_divider' > 1 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/607087" id="607087">bnx2x panic dumps with multiple interfaces enabled [rhel-5.5.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504004" comment="kernel-headers is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504002" comment="kernel is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504024" comment="kernel-doc is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504022" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504008" comment="kernel-devel is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504014" comment="kernel-debug is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504018" comment="kernel-kdump is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504010" comment="kernel-xen-devel is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504012" comment="kernel-debug-devel is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504020" comment="kernel-PAE is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504016" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100504006" comment="kernel-xen is earlier than 0:2.6.18-194.8.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100505" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0505: perl-Archive-Tar security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0505-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0505.html" />
          <reference source="CVE" ref_id="CVE-2007-4829" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-4829.html" />
    
    <description>The Archive::Tar module provides a mechanism for Perl scripts to manipulate
tar archive files.

Multiple directory traversal flaws were discovered in the Archive::Tar
module. A specially-crafted tar file could cause a Perl script, using the
Archive::Tar module to extract the archive, to overwrite an arbitrary file
writable by the user running the script. (CVE-2007-4829)

This package upgrades the Archive::Tar module to version 1.39_01. Refer to
the Archive::Tar module's changes file, linked to in the References, for a
full list of changes.

Users of perl-Archive-Tar are advised to upgrade to this updated package,
which corrects these issues. All applications using the Archive::Tar module
must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-01" />
        <updated date="2010-07-01" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-4829.html">CVE-2007-4829</cve>
                <bugzilla href="http://bugzilla.redhat.com/295021" id="295021">CVE-2007-4829 perl-Archive-Tar directory traversal flaws</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100505002" comment="perl-Archive-Tar is earlier than 1:1.39.1-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100505003" comment="perl-Archive-Tar is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100505005" comment="perl-Archive-Tar is earlier than 0:1.39.1-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100505006" comment="perl-Archive-Tar is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100518" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0518: scsi-target-utils security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0518-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0518.html" />
          <reference source="CVE" ref_id="CVE-2010-2221" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2221.html" />
    
    <description>The scsi-target-utils package contains the daemon and tools to set up and
monitor SCSI targets. Currently, iSCSI software and iSER targets are
supported.

Multiple buffer overflow flaws were found in scsi-target-utils' tgtd
daemon. A remote attacker could trigger these flaws by sending a
carefully-crafted Internet Storage Name Service (iSNS) request, causing the
tgtd daemon to crash. (CVE-2010-2221)

Red Hat would like to thank the Vulnerability Research Team at TELUS
Security Labs and Fujita Tomonori for responsibly reporting these flaws.

All scsi-target-utils users should upgrade to this updated package, which
contains a backported patch to correct these issues. All running
scsi-target-utils services must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-08" />
        <updated date="2010-07-08" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2221.html">CVE-2010-2221</cve>
                <bugzilla href="http://bugzilla.redhat.com/593877" id="593877">CVE-2010-2221 scsi-target-utils: stack buffer overflow vulnerability</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_cluster_storage</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100518002" comment="scsi-target-utils is earlier than 0:0.0-6.20091205snap.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100362003" comment="scsi-target-utils is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100519" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0519: libtiff security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0519-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0519.html" />
          <reference source="CVE" ref_id="CVE-2010-1411" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1411.html" />
          <reference source="CVE" ref_id="CVE-2010-2481" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2481.html" />
          <reference source="CVE" ref_id="CVE-2010-2483" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2483.html" />
          <reference source="CVE" ref_id="CVE-2010-2595" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2595.html" />
          <reference source="CVE" ref_id="CVE-2010-2597" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2597.html" />
          <reference source="CVE" ref_id="CVE-2010-4665" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4665.html" />
    
    <description>The libtiff packages contain a library of functions for manipulating Tagged
Image File Format (TIFF) files.

Multiple integer overflow flaws, leading to a buffer overflow, were
discovered in libtiff. An attacker could use these flaws to create a
specially-crafted TIFF file that, when opened, would cause an application
linked against libtiff to crash or, possibly, execute arbitrary code.
(CVE-2010-1411)

Multiple input validation flaws were discovered in libtiff. An attacker
could use these flaws to create a specially-crafted TIFF file that, when
opened, would cause an application linked against libtiff to crash.
(CVE-2010-2481, CVE-2010-2483, CVE-2010-2595, CVE-2010-2597)

Red Hat would like to thank Apple Product Security for responsibly
reporting the CVE-2010-1411 flaw, who credit Kevin Finisterre of
digitalmunition.com for the discovery of the issue.

All libtiff users are advised to upgrade to these updated packages, which
contain backported patches to resolve these issues. All running
applications linked against libtiff must be restarted for this update to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-08" />
        <updated date="2010-07-08" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1411.html">CVE-2010-1411</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2481.html">CVE-2010-2481</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2483.html">CVE-2010-2483</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2595.html">CVE-2010-2595</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2597.html">CVE-2010-2597</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4665.html">CVE-2010-4665</cve>
                <bugzilla href="http://bugzilla.redhat.com/592361" id="592361">CVE-2010-1411 libtiff: integer overflows leading to heap overflow in Fax3SetupState</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/610684" id="610684">CVE-2010-2595 libtiff: Array index error due improper handling of invalid ReferenceBlackWhite values</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/610776" id="610776">CVE-2010-2597 libtiff: use of uninitialized values crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/611895" id="611895">CVE-2010-2481 libtiff: TIFFExtractData out-of-bounds read crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/611900" id="611900">CVE-2010-2483 libtiff: out-of-bounds read crash on images with invalid SamplesPerPixel values</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100519002" comment="libtiff is earlier than 0:3.8.2-7.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100519003" comment="libtiff is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100519004" comment="libtiff-devel is earlier than 0:3.8.2-7.el5_5.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100519005" comment="libtiff-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100519007" comment="libtiff is earlier than 0:3.6.1-12.el4_8.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100519008" comment="libtiff is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100519009" comment="libtiff-devel is earlier than 0:3.6.1-12.el4_8.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100519010" comment="libtiff-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100520" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0520: libtiff security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0520-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0520.html" />
          <reference source="CVE" ref_id="CVE-2010-1411" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1411.html" />
          <reference source="CVE" ref_id="CVE-2010-2598" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2598.html" />
    
    <description>The libtiff packages contain a library of functions for manipulating Tagged
Image File Format (TIFF) files.

Multiple integer overflow flaws, leading to a buffer overflow, were
discovered in libtiff. An attacker could use these flaws to create a
specially-crafted TIFF file that, when opened, would cause an application
linked against libtiff to crash or, possibly, execute arbitrary code.
(CVE-2010-1411)

An input validation flaw was discovered in libtiff. An attacker could use
this flaw to create a specially-crafted TIFF file that, when opened, would
cause an application linked against libtiff to crash. (CVE-2010-2598)

Red Hat would like to thank Apple Product Security for responsibly
reporting the CVE-2010-1411 flaw, who credit Kevin Finisterre of
digitalmunition.com for the discovery of the issue.

All libtiff users are advised to upgrade to these updated packages, which
contain backported patches to resolve these issues. All running
applications linked against libtiff must be restarted for this update to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-08" />
        <updated date="2010-07-08" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1411.html">CVE-2010-1411</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2598.html">CVE-2010-2598</cve>
                <bugzilla href="http://bugzilla.redhat.com/592361" id="592361">CVE-2010-1411 libtiff: integer overflows leading to heap overflow in Fax3SetupState</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/610786" id="610786">CVE-2010-2598 libtiff: crash when reading image with not configured compression</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100520002" comment="libtiff is earlier than 0:3.5.7-34.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100519008" comment="libtiff is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100520004" comment="libtiff-devel is earlier than 0:3.5.7-34.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100519010" comment="libtiff-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100528" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0528: avahi security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0528-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0528.html" />
          <reference source="CVE" ref_id="CVE-2009-0758" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-0758.html" />
          <reference source="CVE" ref_id="CVE-2010-2244" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2244.html" />
    
    <description>Avahi is an implementation of the DNS Service Discovery and Multicast DNS
specifications for Zero Configuration Networking. It facilitates service
discovery on a local network. Avahi and Avahi-aware applications allow you
to plug your computer into a network and, with no configuration, view other
people to chat with, view printers to print to, and find shared files on
other computers.

A flaw was found in the way the Avahi daemon (avahi-daemon) processed
Multicast DNS (mDNS) packets with corrupted checksums. An attacker on the
local network could use this flaw to cause avahi-daemon on a target system
to exit unexpectedly via specially-crafted mDNS packets. (CVE-2010-2244)

A flaw was found in the way avahi-daemon processed incoming unicast mDNS
messages. If the mDNS reflector were enabled on a system, an attacker on
the local network could send a specially-crafted unicast mDNS message to
that system, resulting in its avahi-daemon flooding the network with a
multicast packet storm, and consuming a large amount of CPU. Note: The mDNS
reflector is disabled by default. (CVE-2009-0758)

All users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues. After installing the update,
avahi-daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-13" />
        <updated date="2010-07-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-0758.html">CVE-2009-0758</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2244.html">CVE-2010-2244</cve>
                <bugzilla href="http://bugzilla.redhat.com/488314" id="488314">CVE-2009-0758 avahi: remote DoS via legacy unicast mDNS queries</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/607293" id="607293">CVE-2010-2244 avahi: assertion failure after receiving a packet with corrupted checksum</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528014" comment="avahi-compat-howl is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528015" comment="avahi-compat-howl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528022" comment="avahi-glib-devel is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528023" comment="avahi-glib-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528002" comment="avahi is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528003" comment="avahi is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528006" comment="avahi-compat-howl-devel is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528007" comment="avahi-compat-howl-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528010" comment="avahi-compat-libdns_sd is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528011" comment="avahi-compat-libdns_sd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528004" comment="avahi-glib is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528005" comment="avahi-glib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528020" comment="avahi-tools is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528021" comment="avahi-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528018" comment="avahi-qt3-devel is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528019" comment="avahi-qt3-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528016" comment="avahi-compat-libdns_sd-devel is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528017" comment="avahi-compat-libdns_sd-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528012" comment="avahi-qt3 is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528013" comment="avahi-qt3 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100528008" comment="avahi-devel is earlier than 0:0.6.16-9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100528009" comment="avahi-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100533" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0533: pcsc-lite security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0533-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0533.html" />
          <reference source="CVE" ref_id="CVE-2009-4901" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-4901.html" />
          <reference source="CVE" ref_id="CVE-2010-0407" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0407.html" />
    
    <description>PC/SC Lite provides a Windows SCard compatible interface for communicating
with smart cards, smart card readers, and other security tokens.

Multiple buffer overflow flaws were discovered in the way the pcscd daemon,
a resource manager that coordinates communications with smart card readers
and smart cards connected to the system, handled client requests. A local
user could create a specially-crafted request that would cause the pcscd
daemon to crash or, possibly, execute arbitrary code. (CVE-2010-0407,
CVE-2009-4901)

Users of pcsc-lite should upgrade to these updated packages, which contain
a backported patch to correct these issues. After installing this update,
the pcscd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-14" />
        <updated date="2010-07-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-4901.html">CVE-2009-4901</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0407.html">CVE-2010-0407</cve>
                <bugzilla href="http://bugzilla.redhat.com/596426" id="596426">CVE-2009-4901 CVE-2009-4902 CVE-2010-0407 pcsc-lite: Privilege escalation via specially-crafted client to PC/SC Smart Card daemon messages</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100533008" comment="pcsc-lite-libs is earlier than 0:1.4.4-4.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100533009" comment="pcsc-lite-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100533006" comment="pcsc-lite-doc is earlier than 0:1.4.4-4.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100533007" comment="pcsc-lite-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100533002" comment="pcsc-lite is earlier than 0:1.4.4-4.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100533003" comment="pcsc-lite is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100533004" comment="pcsc-lite-devel is earlier than 0:1.4.4-4.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100533005" comment="pcsc-lite-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100534" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0534: libpng security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0534-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0534.html" />
          <reference source="CVE" ref_id="CVE-2009-2042" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2042.html" />
          <reference source="CVE" ref_id="CVE-2010-0205" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0205.html" />
          <reference source="CVE" ref_id="CVE-2010-1205" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1205.html" />
          <reference source="CVE" ref_id="CVE-2010-2249" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2249.html" />
    
    <description>The libpng packages contain a library of functions for creating and
manipulating PNG (Portable Network Graphics) image format files.

A memory corruption flaw was found in the way applications, using the
libpng library and its progressive reading method, decoded certain PNG
images. An attacker could create a specially-crafted PNG image that, when
opened, could cause an application using libpng to crash or, potentially,
execute arbitrary code with the privileges of the user running the
application. (CVE-2010-1205)

A denial of service flaw was found in the way applications using the libpng
library decoded PNG images that have certain, highly compressed ancillary
chunks. An attacker could create a specially-crafted PNG image that could
cause an application using libpng to consume excessive amounts of memory
and CPU time, and possibly crash. (CVE-2010-0205)

A memory leak flaw was found in the way applications using the libpng
library decoded PNG images that use the Physical Scale (sCAL) extension. An
attacker could create a specially-crafted PNG image that could cause an
application using libpng to exhaust all available memory and possibly crash
or exit. (CVE-2010-2249)

A sensitive information disclosure flaw was found in the way applications
using the libpng library processed 1-bit interlaced PNG images. An attacker
could create a specially-crafted PNG image that could cause an application
using libpng to disclose uninitialized memory. (CVE-2009-2042)

Users of libpng and libpng10 should upgrade to these updated packages,
which contain backported patches to correct these issues. All running
applications using libpng or libpng10 must be restarted for the update to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-14" />
        <updated date="2010-07-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2042.html">CVE-2009-2042</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0205.html">CVE-2010-0205</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1205.html">CVE-2010-1205</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2249.html">CVE-2010-2249</cve>
                <bugzilla href="http://bugzilla.redhat.com/504782" id="504782">CVE-2009-2042 libpng: Interlaced Images Information Disclosure Vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/566234" id="566234">CVE-2010-0205 libpng: excessive memory consumption due to highly compressed huge ancillary chunk</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/608238" id="608238">CVE-2010-1205 libpng: out-of-bounds memory write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/608644" id="608644">CVE-2010-2249 libpng: Memory leak when processing Physical Scale (sCAL) images</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534002" comment="libpng is earlier than 2:1.2.10-7.1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534003" comment="libpng is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534004" comment="libpng-devel is earlier than 2:1.2.10-7.1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534005" comment="libpng-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534007" comment="libpng is earlier than 2:1.2.2-30" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534008" comment="libpng is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534009" comment="libpng-devel is earlier than 2:1.2.2-30" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534010" comment="libpng-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534013" comment="libpng10-devel is earlier than 0:1.0.13-21" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534014" comment="libpng10-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534011" comment="libpng10 is earlier than 0:1.0.13-21" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534012" comment="libpng10 is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534016" comment="libpng is earlier than 2:1.2.7-3.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534008" comment="libpng is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534017" comment="libpng-devel is earlier than 2:1.2.7-3.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534010" comment="libpng-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534019" comment="libpng10-devel is earlier than 0:1.0.16-3.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534014" comment="libpng10-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100534018" comment="libpng10 is earlier than 0:1.0.16-3.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100534012" comment="libpng10 is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100542" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0542: openldap security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0542-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0542.html" />
          <reference source="CVE" ref_id="CVE-2010-0211" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0211.html" />
          <reference source="CVE" ref_id="CVE-2010-0212" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0212.html" />
    
    <description>OpenLDAP is an open source suite of LDAP (Lightweight Directory Access
Protocol) applications and development tools.

Multiple flaws were discovered in the way the slapd daemon handled modify
relative distinguished name (modrdn) requests. An authenticated user with
privileges to perform modrdn operations could use these flaws to crash the
slapd daemon via specially-crafted modrdn requests. (CVE-2010-0211,
CVE-2010-0212)

Red Hat would like to thank CERT-FI for responsibly reporting these flaws,
who credit Ilkka Mattila and Tuomas Salomäki for the discovery of the
issues.

Users of OpenLDAP should upgrade to these updated packages, which contain
a backported patch to correct these issues. After installing this update,
the OpenLDAP daemons will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-20" />
        <updated date="2010-07-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0211.html">CVE-2010-0211</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0212.html">CVE-2010-0212</cve>
                <bugzilla href="http://bugzilla.redhat.com/605448" id="605448">CVE-2010-0211 openldap: modrdn processing uninitialized pointer free</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/605452" id="605452">CVE-2010-0212 openldap: modrdn processing IA5StringNormalize NULL pointer dereference</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100542010" comment="openldap-devel is earlier than 0:2.3.43-12.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198011" comment="openldap-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100542012" comment="openldap-clients is earlier than 0:2.3.43-12.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198005" comment="openldap-clients is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100542008" comment="openldap-servers-sql is earlier than 0:2.3.43-12.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198007" comment="openldap-servers-sql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100542006" comment="compat-openldap is earlier than 0:2.3.43_2.2.29-12.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198015" comment="compat-openldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100542002" comment="openldap is earlier than 0:2.3.43-12.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198003" comment="openldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100542004" comment="openldap-servers is earlier than 0:2.3.43-12.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198009" comment="openldap-servers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100542014" comment="openldap-servers-overlays is earlier than 0:2.3.43-12.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100198013" comment="openldap-servers-overlays is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100543" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0543: openldap security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0543-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0543.html" />
          <reference source="CVE" ref_id="CVE-2009-3767" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3767.html" />
          <reference source="CVE" ref_id="CVE-2010-0211" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0211.html" />
    
    <description>OpenLDAP is an open source suite of LDAP (Lightweight Directory Access
Protocol) applications and development tools.

An uninitialized pointer use flaw was discovered in the way the slapd
daemon handled modify relative distinguished name (modrdn) requests. An
authenticated user with privileges to perform modrdn operations could use
this flaw to crash the slapd daemon via specially-crafted modrdn requests.
(CVE-2010-0211)

Red Hat would like to thank CERT-FI for responsibly reporting the
CVE-2010-0211 flaw, who credit Ilkka Mattila and Tuomas Salomäki for the
discovery of the issue.

A flaw was found in the way OpenLDAP handled NUL characters in the
CommonName field of X.509 certificates. An attacker able to get a
carefully-crafted certificate signed by a trusted Certificate Authority
could trick applications using OpenLDAP libraries into accepting it by
mistake, allowing the attacker to perform a man-in-the-middle attack.
(CVE-2009-3767)

Users of OpenLDAP should upgrade to these updated packages, which contain
backported patches to resolve these issues. After installing this update,
the OpenLDAP daemons will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-20" />
        <updated date="2010-07-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3767.html">CVE-2009-3767</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0211.html">CVE-2010-0211</cve>
                <bugzilla href="http://bugzilla.redhat.com/530715" id="530715">CVE-2009-3767 OpenLDAP: Doesn't properly handle NULL character in subject Common Name</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/605448" id="605448">CVE-2010-0211 openldap: modrdn processing uninitialized pointer free</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100543012" comment="openldap-devel is earlier than 0:2.2.13-12.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100543013" comment="openldap-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100543004" comment="openldap-clients is earlier than 0:2.2.13-12.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100543005" comment="openldap-clients is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100543010" comment="openldap-servers-sql is earlier than 0:2.2.13-12.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100543011" comment="openldap-servers-sql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100543008" comment="compat-openldap is earlier than 0:2.1.30-12.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100543009" comment="compat-openldap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100543002" comment="openldap is earlier than 0:2.2.13-12.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100543003" comment="openldap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100543006" comment="openldap-servers is earlier than 0:2.2.13-12.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100543007" comment="openldap-servers is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100544" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0544: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0544-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0544.html" />
          <reference source="CVE" ref_id="CVE-2010-0174" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0174.html" />
          <reference source="CVE" ref_id="CVE-2010-0175" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0175.html" />
          <reference source="CVE" ref_id="CVE-2010-0176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0176.html" />
          <reference source="CVE" ref_id="CVE-2010-0177" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0177.html" />
          <reference source="CVE" ref_id="CVE-2010-1197" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1197.html" />
          <reference source="CVE" ref_id="CVE-2010-1198" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1198.html" />
          <reference source="CVE" ref_id="CVE-2010-1199" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1199.html" />
          <reference source="CVE" ref_id="CVE-2010-1200" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1200.html" />
          <reference source="CVE" ref_id="CVE-2010-1211" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1211.html" />
          <reference source="CVE" ref_id="CVE-2010-1214" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1214.html" />
          <reference source="CVE" ref_id="CVE-2010-2753" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2753.html" />
          <reference source="CVE" ref_id="CVE-2010-2754" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2754.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the processing of malformed HTML mail content.
An HTML mail message containing malicious content could cause Thunderbird
to crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2010-0174, CVE-2010-1200, CVE-2010-1211,
CVE-2010-1214, CVE-2010-2753)

An integer overflow flaw was found in the processing of malformed HTML mail
content. An HTML mail message containing malicious content could cause
Thunderbird to crash or, potentially, execute arbitrary code with the
privileges of the user running Thunderbird. (CVE-2010-1199)

Several use-after-free flaws were found in Thunderbird. Viewing an HTML
mail message containing malicious content could result in Thunderbird
executing arbitrary code with the privileges of the user running
Thunderbird. (CVE-2010-0175, CVE-2010-0176, CVE-2010-0177)

A flaw was found in the way Thunderbird plug-ins interact. It was possible
for a plug-in to reference the freed memory from a different plug-in,
resulting in the execution of arbitrary code with the privileges of the
user running Thunderbird. (CVE-2010-1198)

A flaw was found in the way Thunderbird handled the "Content-Disposition:
attachment" HTTP header when the "Content-Type: multipart" HTTP header was
also present. Loading remote HTTP content that allows arbitrary uploads and
relies on the "Content-Disposition: attachment" HTTP header to prevent
content from being displayed inline, could be used by an attacker to serve
malicious content to users. (CVE-2010-1197)

A same-origin policy bypass flaw was found in Thunderbird. Remote HTML
content could steal private data from different remote HTML content
Thunderbird has loaded. (CVE-2010-2754)

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-20" />
        <updated date="2010-07-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0174.html">CVE-2010-0174</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0175.html">CVE-2010-0175</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0176.html">CVE-2010-0176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0177.html">CVE-2010-0177</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1197.html">CVE-2010-1197</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1198.html">CVE-2010-1198</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1199.html">CVE-2010-1199</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1200.html">CVE-2010-1200</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1211.html">CVE-2010-1211</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1214.html">CVE-2010-1214</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2753.html">CVE-2010-2753</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2754.html">CVE-2010-2754</cve>
                <bugzilla href="http://bugzilla.redhat.com/578147" id="578147">CVE-2010-0174 Mozilla crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578149" id="578149">CVE-2010-0175 Mozilla remote code execution with use-after-free in nsTreeSelection</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578150" id="578150">CVE-2010-0176 Mozilla Dangling pointer vulnerability in nsTreeContentView</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578152" id="578152">CVE-2010-0177 Mozilla Dangling pointer vulnerability in nsPluginArray</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590804" id="590804">CVE-2010-1200 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590828" id="590828">CVE-2010-1198 Mozilla Freed object reuse across plugin instances</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590833" id="590833">CVE-2010-1199 Mozilla Integer Overflow in XSLT Node Sorting</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590850" id="590850">CVE-2010-1197 Mozilla Content-Disposition: attachment ignored if Content-Type: multipart also present</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615455" id="615455">CVE-2010-1211 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615462" id="615462">CVE-2010-1214 Mozilla Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615466" id="615466">CVE-2010-2753 Mozilla nsTreeSelection dangling pointer remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615488" id="615488">CVE-2010-2754 Mozilla Cross-origin data leakage from script filename in error messages</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100544002" comment="thunderbird is earlier than 0:1.5.0.12-28.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100154003" comment="thunderbird is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100545" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0545: thunderbird security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0545-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0545.html" />
          <reference source="CVE" ref_id="CVE-2010-0174" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0174.html" />
          <reference source="CVE" ref_id="CVE-2010-0175" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0175.html" />
          <reference source="CVE" ref_id="CVE-2010-0176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0176.html" />
          <reference source="CVE" ref_id="CVE-2010-0177" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0177.html" />
          <reference source="CVE" ref_id="CVE-2010-1197" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1197.html" />
          <reference source="CVE" ref_id="CVE-2010-1198" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1198.html" />
          <reference source="CVE" ref_id="CVE-2010-1199" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1199.html" />
          <reference source="CVE" ref_id="CVE-2010-1200" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1200.html" />
          <reference source="CVE" ref_id="CVE-2010-1205" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1205.html" />
          <reference source="CVE" ref_id="CVE-2010-1211" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1211.html" />
          <reference source="CVE" ref_id="CVE-2010-1214" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1214.html" />
          <reference source="CVE" ref_id="CVE-2010-2753" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2753.html" />
          <reference source="CVE" ref_id="CVE-2010-2754" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2754.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

A memory corruption flaw was found in the way Thunderbird decoded certain
PNG images. An attacker could create a mail message containing a
specially-crafted PNG image that, when opened, could cause Thunderbird to
crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2010-1205)

Several flaws were found in the processing of malformed HTML mail content.
An HTML mail message containing malicious content could cause Thunderbird
to crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2010-0174, CVE-2010-1200, CVE-2010-1211,
CVE-2010-1214, CVE-2010-2753)

An integer overflow flaw was found in the processing of malformed HTML mail
content. An HTML mail message containing malicious content could cause
Thunderbird to crash or, potentially, execute arbitrary code with the
privileges of the user running Thunderbird. (CVE-2010-1199)

Several use-after-free flaws were found in Thunderbird. Viewing an HTML
mail message containing malicious content could result in Thunderbird
executing arbitrary code with the privileges of the user running
Thunderbird. (CVE-2010-0175, CVE-2010-0176, CVE-2010-0177)

A flaw was found in the way Thunderbird plug-ins interact. It was possible
for a plug-in to reference the freed memory from a different plug-in,
resulting in the execution of arbitrary code with the privileges of the
user running Thunderbird. (CVE-2010-1198)

A flaw was found in the way Thunderbird handled the "Content-Disposition:
attachment" HTTP header when the "Content-Type: multipart" HTTP header was
also present. Loading remote HTTP content that allows arbitrary uploads and
relies on the "Content-Disposition: attachment" HTTP header to prevent
content from being displayed inline, could be used by an attacker to serve
malicious content to users. (CVE-2010-1197)

A same-origin policy bypass flaw was found in Thunderbird. Remote HTML
content could steal private data from different remote HTML content
Thunderbird has loaded. (CVE-2010-2754)

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-20" />
        <updated date="2010-07-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0174.html">CVE-2010-0174</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0175.html">CVE-2010-0175</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0176.html">CVE-2010-0176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0177.html">CVE-2010-0177</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1197.html">CVE-2010-1197</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1198.html">CVE-2010-1198</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1199.html">CVE-2010-1199</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1200.html">CVE-2010-1200</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1205.html">CVE-2010-1205</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1211.html">CVE-2010-1211</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1214.html">CVE-2010-1214</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2753.html">CVE-2010-2753</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2754.html">CVE-2010-2754</cve>
                <bugzilla href="http://bugzilla.redhat.com/578147" id="578147">CVE-2010-0174 Mozilla crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578149" id="578149">CVE-2010-0175 Mozilla remote code execution with use-after-free in nsTreeSelection</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578150" id="578150">CVE-2010-0176 Mozilla Dangling pointer vulnerability in nsTreeContentView</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578152" id="578152">CVE-2010-0177 Mozilla Dangling pointer vulnerability in nsPluginArray</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590804" id="590804">CVE-2010-1200 Mozilla Crashes with evidence of memory corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590828" id="590828">CVE-2010-1198 Mozilla Freed object reuse across plugin instances</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590833" id="590833">CVE-2010-1199 Mozilla Integer Overflow in XSLT Node Sorting</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/590850" id="590850">CVE-2010-1197 Mozilla Content-Disposition: attachment ignored if Content-Type: multipart also present</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/608238" id="608238">CVE-2010-1205 libpng: out-of-bounds memory write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615455" id="615455">CVE-2010-1211 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615462" id="615462">CVE-2010-1214 Mozilla Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615466" id="615466">CVE-2010-2753 Mozilla nsTreeSelection dangling pointer remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615488" id="615488">CVE-2010-2754 Mozilla Cross-origin data leakage from script filename in error messages</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100545002" comment="thunderbird is earlier than 0:2.0.0.24-6.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100153003" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100546" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0546: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0546-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0546.html" />
          <reference source="CVE" ref_id="CVE-2010-1205" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1205.html" />
          <reference source="CVE" ref_id="CVE-2010-1211" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1211.html" />
          <reference source="CVE" ref_id="CVE-2010-1214" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1214.html" />
          <reference source="CVE" ref_id="CVE-2010-2751" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2751.html" />
          <reference source="CVE" ref_id="CVE-2010-2753" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2753.html" />
          <reference source="CVE" ref_id="CVE-2010-2754" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2754.html" />
    
    <description>SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause SeaMonkey to crash or,
potentially, execute arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2010-1211, CVE-2010-2753, CVE-2010-1214)

A memory corruption flaw was found in the way SeaMonkey decoded certain PNG
images. An attacker could create a specially-crafted PNG image that, when
opened, could cause SeaMonkey to crash or, potentially, execute arbitrary
code with the privileges of the user running SeaMonkey. (CVE-2010-1205)

A same-origin policy bypass flaw was found in SeaMonkey. An attacker could
create a malicious web page that, when viewed by a victim, could steal
private data from a different website the victim has loaded with SeaMonkey.
(CVE-2010-2754)

A flaw was found in the way SeaMonkey displayed the location bar when
visiting a secure web page. A malicious server could use this flaw to
present data that appears to originate from a secure server, even though it
does not. (CVE-2010-2751)

All SeaMonkey users should upgrade to these updated packages, which correct
these issues. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-20" />
        <updated date="2010-07-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1205.html">CVE-2010-1205</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1211.html">CVE-2010-1211</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1214.html">CVE-2010-1214</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2751.html">CVE-2010-2751</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2753.html">CVE-2010-2753</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2754.html">CVE-2010-2754</cve>
                <bugzilla href="http://bugzilla.redhat.com/608238" id="608238">CVE-2010-1205 libpng: out-of-bounds memory write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615455" id="615455">CVE-2010-1211 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615462" id="615462">CVE-2010-1214 Mozilla Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615466" id="615466">CVE-2010-2753 Mozilla nsTreeSelection dangling pointer remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615480" id="615480">CVE-2010-2751 Mozilla SSL spoofing with history.back() and history.forward()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615488" id="615488">CVE-2010-2754 Mozilla Cross-origin data leakage from script filename in error messages</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546012" comment="seamonkey-nspr is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113013" comment="seamonkey-nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546010" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113019" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546004" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546014" comment="seamonkey-mail is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546002" comment="seamonkey is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546016" comment="seamonkey-devel is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546020" comment="seamonkey-chat is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546018" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113011" comment="seamonkey-nss-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546006" comment="seamonkey-nss is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113005" comment="seamonkey-nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546008" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.57.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546028" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-60.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546027" comment="seamonkey-mail is earlier than 0:1.0.9-60.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546023" comment="seamonkey is earlier than 0:1.0.9-60.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546025" comment="seamonkey-devel is earlier than 0:1.0.9-60.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546024" comment="seamonkey-chat is earlier than 0:1.0.9-60.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100546026" comment="seamonkey-js-debugger is earlier than 0:1.0.9-60.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100547" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0547: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0547-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0547.html" />
          <reference source="CVE" ref_id="CVE-2010-0654" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0654.html" />
          <reference source="CVE" ref_id="CVE-2010-1205" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1205.html" />
          <reference source="CVE" ref_id="CVE-2010-1206" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1206.html" />
          <reference source="CVE" ref_id="CVE-2010-1207" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1207.html" />
          <reference source="CVE" ref_id="CVE-2010-1208" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1208.html" />
          <reference source="CVE" ref_id="CVE-2010-1209" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1209.html" />
          <reference source="CVE" ref_id="CVE-2010-1210" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1210.html" />
          <reference source="CVE" ref_id="CVE-2010-1211" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1211.html" />
          <reference source="CVE" ref_id="CVE-2010-1212" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1212.html" />
          <reference source="CVE" ref_id="CVE-2010-1213" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1213.html" />
          <reference source="CVE" ref_id="CVE-2010-1214" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1214.html" />
          <reference source="CVE" ref_id="CVE-2010-1215" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1215.html" />
          <reference source="CVE" ref_id="CVE-2010-2751" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2751.html" />
          <reference source="CVE" ref_id="CVE-2010-2752" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2752.html" />
          <reference source="CVE" ref_id="CVE-2010-2753" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2753.html" />
          <reference source="CVE" ref_id="CVE-2010-2754" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2754.html" />
    
    <description>Mozilla Firefox is an open source web browser. XULRunner provides the XUL
Runtime environment for Mozilla Firefox.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-1208, CVE-2010-1209, CVE-2010-1211, CVE-2010-1212,
CVE-2010-1214, CVE-2010-1215, CVE-2010-2752, CVE-2010-2753)

A memory corruption flaw was found in the way Firefox decoded certain PNG
images. An attacker could create a specially-crafted PNG image that, when
opened, could cause Firefox to crash or, potentially, execute arbitrary
code with the privileges of the user running Firefox. (CVE-2010-1205)

Several same-origin policy bypass flaws were found in Firefox. An attacker
could create a malicious web page that, when viewed by a victim, could
steal private data from a different website the victim has loaded with
Firefox. (CVE-2010-0654, CVE-2010-1207, CVE-2010-1213, CVE-2010-2754)

A flaw was found in the way Firefox presented the location bar to a user. A
malicious website could trick a user into thinking they are visiting the
site reported by the location bar, when the page is actually content
controlled by an attacker. (CVE-2010-1206)

A flaw was found in the way Firefox displayed the location bar when
visiting a secure web page. A malicious server could use this flaw to
present data that appears to originate from a secure server, even though it
does not. (CVE-2010-2751)

A flaw was found in the way Firefox displayed certain malformed characters.
A malicious web page could use this flaw to bypass certain string
sanitization methods, allowing it to display malicious information to
users. (CVE-2010-1210)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.6.7. You can find a link to the Mozilla advisories
in the References section of this erratum.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.6.7, which corrects these issues. After installing the
update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-20" />
        <updated date="2010-07-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0654.html">CVE-2010-0654</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1205.html">CVE-2010-1205</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1206.html">CVE-2010-1206</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1207.html">CVE-2010-1207</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1208.html">CVE-2010-1208</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1209.html">CVE-2010-1209</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1210.html">CVE-2010-1210</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1211.html">CVE-2010-1211</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1212.html">CVE-2010-1212</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1213.html">CVE-2010-1213</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1214.html">CVE-2010-1214</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1215.html">CVE-2010-1215</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2751.html">CVE-2010-2751</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2752.html">CVE-2010-2752</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2753.html">CVE-2010-2753</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2754.html">CVE-2010-2754</cve>
                <bugzilla href="http://bugzilla.redhat.com/568231" id="568231">CVE-2010-0654 firefox: cross-domain information disclosure</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/608238" id="608238">CVE-2010-1205 libpng: out-of-bounds memory write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/608763" id="608763">CVE-2010-1206 Firefox: Spoofing attacks via vectors involving 'No Content' status code or via a windows.stop call</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615455" id="615455">CVE-2010-1211 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615456" id="615456">CVE-2010-1212 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615458" id="615458">CVE-2010-1208 Mozilla DOM attribute cloning remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615459" id="615459">CVE-2010-1209 Mozilla Use-after-free error in NodeIterator</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615462" id="615462">CVE-2010-1214 Mozilla Plugin parameter EnsureCachedAttrParamArrays remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615463" id="615463">CVE-2010-1215 Mozilla Arbitrary code execution using SJOW and fast native function</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615464" id="615464">CVE-2010-2752 Mozilla nsCSSValue::Array index integer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615466" id="615466">CVE-2010-2753 Mozilla nsTreeSelection dangling pointer remote code execution vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615471" id="615471">CVE-2010-1213 Mozilla Cross-origin data disclosure via Web Workers and importScripts</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615472" id="615472">CVE-2010-1207 Mozilla Same-origin bypass using canvas context</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615474" id="615474">CVE-2010-1210 Mozilla Characters mapped to U+FFFD in 8 bit encodings cause subsequent character to vanish</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615480" id="615480">CVE-2010-2751 Mozilla SSL spoofing with history.back() and history.forward()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615488" id="615488">CVE-2010-2754 Mozilla Cross-origin data leakage from script filename in error messages</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100547002" comment="xulrunner is earlier than 0:1.9.2.7-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100547004" comment="xulrunner-devel is earlier than 0:1.9.2.7-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100547006" comment="firefox is earlier than 0:3.6.7-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112009" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100547009" comment="firefox is earlier than 0:3.6.7-2.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100549" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0549: java-1.6.0-ibm security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0549-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0549.html" />
          <reference source="CVE" ref_id="CVE-2010-0887" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0887.html" />
    
    <description>The IBM 1.6.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

This update fixes one vulnerability in the IBM Java 2 Runtime Environment.
This vulnerability is summarized on the IBM "Security alerts" page listed
in the References section. (CVE-2010-0887)

All users of java-1.6.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.6.0 SR8-FP1 Java release. All running
instances of IBM Java must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-21" />
        <updated date="2010-07-21" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0887.html">CVE-2010-0887</cve>
                <bugzilla href="http://bugzilla.redhat.com/581237" id="581237">CVE-2010-0886 CVE-2010-0887 Sun Java: Java Web Start arbitrary command line injection</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100549010" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.8.1-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383005" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100549002" comment="java-1.6.0-ibm is earlier than 1:1.6.0.8.1-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383003" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100549014" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.8.1-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383011" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100549004" comment="java-1.6.0-ibm-accessibility is earlier than 1:1.6.0.8.1-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383013" comment="java-1.6.0-ibm-accessibility is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100549016" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.8.1-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383007" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100549006" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.8.1-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383015" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100549008" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.8.1-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383017" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100549012" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.8.1-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383009" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100556" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0556: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0556-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0556.html" />
          <reference source="CVE" ref_id="CVE-2010-2755" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2755.html" />
    
    <description>Mozilla Firefox is an open source web browser. XULRunner provides the XUL Runtime environment for Mozilla Firefox.

An invalid free flaw was found in Firefox's plugin handler. Malicious web content could result in an invalid memory pointer being freed, causing Firefox to crash or, potentially, execute arbitrary code with the privileges of the user running the Firefox application. (CVE-2010-2755)

All Firefox users should upgrade to these updated packages, which contain a backported patch that corrects this issue. After installing the update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-23" />
        <updated date="2010-07-23" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2755.html">CVE-2010-2755</cve>
                <bugzilla href="http://bugzilla.redhat.com/617657" id="617657">CVE-2010-2755 Mozilla arbitrary free flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100556002" comment="xulrunner is earlier than 0:1.9.2.7-3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100556004" comment="xulrunner-devel is earlier than 0:1.9.2.7-3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100556006" comment="firefox is earlier than 0:3.6.7-3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112009" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100557" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0557: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0557-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0557.html" />
          <reference source="CVE" ref_id="CVE-2010-2755" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2755.html" />
    
    <description>SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.

An invalid free flaw was found in SeaMonkey's plugin handler. Malicious web content could result in an invalid memory pointer being freed, causing SeaMonkey to crash or, potentially, execute arbitrary code with the privileges of the user running SeaMonkey. (CVE-2010-2755)

All SeaMonkey users should upgrade to these updated packages, which correct
this issue. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-23" />
        <updated date="2010-07-23" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2755.html">CVE-2010-2755</cve>
                <bugzilla href="http://bugzilla.redhat.com/617657" id="617657">CVE-2010-2755 Mozilla arbitrary free flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557020" comment="seamonkey-nspr is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113013" comment="seamonkey-nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557012" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557006" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113019" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557014" comment="seamonkey-mail is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557002" comment="seamonkey is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557004" comment="seamonkey-devel is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557016" comment="seamonkey-nss is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113005" comment="seamonkey-nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557010" comment="seamonkey-chat is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557008" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113011" comment="seamonkey-nss-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557018" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.58.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557028" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-61.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557024" comment="seamonkey-mail is earlier than 0:1.0.9-61.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557023" comment="seamonkey is earlier than 0:1.0.9-61.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557025" comment="seamonkey-devel is earlier than 0:1.0.9-61.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557027" comment="seamonkey-chat is earlier than 0:1.0.9-61.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100557026" comment="seamonkey-js-debugger is earlier than 0:1.0.9-61.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100558" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0558: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0558-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0558.html" />
          <reference source="CVE" ref_id="CVE-2010-2755" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2755.html" />
    
    <description>Mozilla Firefox is an open source web browser.

An invalid free flaw was found in Firefox's plugin handler. Malicious web content could result in an invalid memory pointer being freed, causing Firefox to crash or, potentially, execute arbitrary code with the privileges of the user running Firefox. (CVE-2010-2755)

All Firefox users should upgrade to these updated packages, which contain a backported patch that corrects this issue. After installing the update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-23" />
        <updated date="2010-07-23" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2755.html">CVE-2010-2755</cve>
                <bugzilla href="http://bugzilla.redhat.com/617657" id="617657">CVE-2010-2755 Mozilla arbitrary free flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100558002" comment="firefox is earlier than 0:3.6.7-3.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100565" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0565: w3m security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0565-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0565.html" />
          <reference source="CVE" ref_id="CVE-2010-2074" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2074.html" />
    
    <description>The w3m program is a pager (or text file viewer) that can also be used as a
text mode web browser.

It was discovered that w3m is affected by the previously published "null
prefix attack", caused by incorrect handling of NULL characters in X.509
certificates. If an attacker is able to get a carefully-crafted certificate
signed by a trusted Certificate Authority, the attacker could use the
certificate during a man-in-the-middle attack and potentially confuse w3m
into accepting it by mistake. (CVE-2010-2074)

All w3m users should upgrade to these updated packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-27" />
        <updated date="2010-07-27" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2074.html">CVE-2010-2074</cve>
                <bugzilla href="http://bugzilla.redhat.com/604855" id="604855">CVE-2010-2074 w3m: doesn't handle NULL in Common Name properly</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100565002" comment="w3m is earlier than 0:0.5.1-17.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100565003" comment="w3m is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100565004" comment="w3m-img is earlier than 0:0.5.1-17.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100565005" comment="w3m-img is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100567" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0567: lvm2-cluster security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0567-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0567.html" />
          <reference source="CVE" ref_id="CVE-2010-2526" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2526.html" />
    
    <description>The lvm2-cluster package contains support for Logical Volume Management
(LVM) in a clustered environment.

It was discovered that the cluster logical volume manager daemon (clvmd)
did not verify the credentials of clients connecting to its control UNIX
abstract socket, allowing local, unprivileged users to send control
commands that were intended to only be available to the privileged root
user. This could allow a local, unprivileged user to cause clvmd to exit,
or request clvmd to activate, deactivate, or reload any logical volume on
the local system or another system in the cluster. (CVE-2010-2526)

Note: This update changes clvmd to use a pathname-based socket rather than
an abstract socket. As such, the lvm2 update RHBA-2010:0569, which changes
LVM to also use this pathname-based socket, must also be installed for LVM
to be able to communicate with the updated clvmd.

All lvm2-cluster users should upgrade to this updated package, which
contains a backported patch to correct this issue. After installing the
updated package, clvmd must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-28" />
        <updated date="2010-07-28" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2526.html">CVE-2010-2526</cve>
                <bugzilla href="http://bugzilla.redhat.com/614248" id="614248">CVE-2010-2526 lvm2-cluster: insecurity when communicating between lvm2 and clvmd</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_cluster_storage</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100567002" comment="lvm2-cluster is earlier than 0:2.02.56-7.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100567003" comment="lvm2-cluster is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100574" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0574: java-1.4.2-ibm security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0574-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0574.html" />
          <reference source="CVE" ref_id="CVE-2010-0084" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0084.html" />
          <reference source="CVE" ref_id="CVE-2010-0085" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0085.html" />
          <reference source="CVE" ref_id="CVE-2010-0087" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0087.html" />
          <reference source="CVE" ref_id="CVE-2010-0088" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0088.html" />
          <reference source="CVE" ref_id="CVE-2010-0089" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0089.html" />
          <reference source="CVE" ref_id="CVE-2010-0091" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0091.html" />
          <reference source="CVE" ref_id="CVE-2010-0095" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0095.html" />
          <reference source="CVE" ref_id="CVE-2010-0839" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0839.html" />
          <reference source="CVE" ref_id="CVE-2010-0840" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0840.html" />
          <reference source="CVE" ref_id="CVE-2010-0841" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0841.html" />
          <reference source="CVE" ref_id="CVE-2010-0842" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0842.html" />
          <reference source="CVE" ref_id="CVE-2010-0843" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0843.html" />
          <reference source="CVE" ref_id="CVE-2010-0844" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0844.html" />
          <reference source="CVE" ref_id="CVE-2010-0846" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0846.html" />
          <reference source="CVE" ref_id="CVE-2010-0847" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0847.html" />
          <reference source="CVE" ref_id="CVE-2010-0848" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0848.html" />
          <reference source="CVE" ref_id="CVE-2010-0849" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0849.html" />
    
    <description>The IBM 1.4.2 SR13-FP5 Java release includes the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit. These
vulnerabilities are summarized on the IBM "Security alerts" page listed in
the References section. (CVE-2010-0084, CVE-2010-0085, CVE-2010-0087,
CVE-2010-0088, CVE-2010-0089, CVE-2010-0091, CVE-2010-0095, CVE-2010-0839,
CVE-2010-0840, CVE-2010-0841, CVE-2010-0842, CVE-2010-0843, CVE-2010-0844,
CVE-2010-0846, CVE-2010-0847, CVE-2010-0848, CVE-2010-0849)

All users of java-1.4.2-ibm are advised to upgrade to these updated
packages, which contain the IBM 1.4.2 SR13-FP5 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-29" />
        <updated date="2010-07-29" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0084.html">CVE-2010-0084</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0085.html">CVE-2010-0085</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0087.html">CVE-2010-0087</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0088.html">CVE-2010-0088</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0089.html">CVE-2010-0089</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0091.html">CVE-2010-0091</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0095.html">CVE-2010-0095</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0839.html">CVE-2010-0839</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0840.html">CVE-2010-0840</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0841.html">CVE-2010-0841</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0842.html">CVE-2010-0842</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0843.html">CVE-2010-0843</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0844.html">CVE-2010-0844</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0846.html">CVE-2010-0846</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0847.html">CVE-2010-0847</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0848.html">CVE-2010-0848</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0849.html">CVE-2010-0849</cve>
                <bugzilla href="http://bugzilla.redhat.com/575740" id="575740">CVE-2010-0084 OpenJDK Policy/PolicyFile leak dynamic ProtectionDomains. (6633872)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575747" id="575747">CVE-2010-0085 OpenJDK File TOCTOU deserialization vulnerability (6736390)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575755" id="575755">CVE-2010-0088 OpenJDK Inflater/Deflater clone issues (6745393)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575756" id="575756">CVE-2010-0091 OpenJDK Unsigned applet can retrieve the dragged information before drop action occurs(6887703)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575772" id="575772">CVE-2010-0095 OpenJDK Subclasses of InetAddress may incorrectly interpret network addresses (6893954)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575846" id="575846">CVE-2010-0840 OpenJDK Applet Trusted Methods Chaining Privilege Escalation Vulnerability (6904691)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575854" id="575854">CVE-2010-0841 OpenJDK JPEGImageReader stepX Integer Overflow Vulnerability (6909597)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575865" id="575865">CVE-2010-0848 OpenJDK AWT Library Invalid Index Vulnerability (6914823)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/575871" id="575871">CVE-2010-0847 OpenJDK ImagingLib arbitrary code execution vulnerability (6914866)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578430" id="578430">CVE-2010-0846 JDK unspecified vulnerability in ImageIO component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578432" id="578432">CVE-2010-0849 JDK unspecified vulnerability in Java2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578433" id="578433">CVE-2010-0087 JDK unspecified vulnerability in JWS/Plugin component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578436" id="578436">CVE-2010-0839 CVE-2010-0842 CVE-2010-0843 CVE-2010-0844 JDK multiple unspecified vulnerabilities</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/578440" id="578440">CVE-2010-0089 JDK unspecified vulnerability in JavaWS/Plugin component</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100574002" comment="java-1.4.2-ibm is earlier than 0:1.4.2.13.5-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155003" comment="java-1.4.2-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100574004" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.13.5-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155011" comment="java-1.4.2-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100574008" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.13.5-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155005" comment="java-1.4.2-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100574006" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.13.5-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155007" comment="java-1.4.2-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100574010" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.13.5-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155009" comment="java-1.4.2-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100574014" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.13.5-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155015" comment="java-1.4.2-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100574012" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.13.5-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155013" comment="java-1.4.2-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100576" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0576: Red Hat Enterprise Linux 3 - 3-Month End Of Life Notice (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0576-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0576.html" />
    
    <description>In accordance with the Red Hat Enterprise Linux Errata Support Policy, the
regular 7 year life-cycle of Red Hat Enterprise Linux 3 will end on October
31, 2010.

After this date, Red Hat will discontinue the regular subscription services
for Red Hat Enterprise Linux 3. Therefore, new bug fix, enhancement, and
security errata updates, as well as technical support services will no
longer be available for the following products:

* Red Hat Enterprise Linux AS 3
* Red Hat Enterprise Linux ES 3
* Red Hat Enterprise Linux WS 3
* Red Hat Enterprise Linux Extras 3
* Red Hat Desktop 3
* Red Hat Global File System 3
* Red Hat Cluster Suite 3

Customers still running production workloads on Red Hat Enterprise
Linux 3 are advised to begin planning the upgrade to Red Hat Enterprise
Linux 5. Active subscribers of Red Hat Enterprise Linux already have access
to all currently maintained versions of Red Hat Enterprise Linux, as part
of their subscription without additional fees.

For customers who are unable to migrate off Red Hat Enterprise Linux 3
before its end-of-life date, Red Hat may offer a limited, optional
extension program. For more information, contact your Red Hat sales
representative or channel partner.

Details of the Red Hat Enterprise Linux life-cycle can be found on the Red
Hat website: http://www.redhat.com/security/updates/errata/</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-30" />
        <updated date="2010-07-30" />
                <bugzilla href="http://bugzilla.redhat.com/616794" id="616794">Send Out RHEL 3 3-Month EOL Notice</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100576002" comment="redhat-release is earlier than 0:3Desktop-13.9.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100576004" comment="redhat-release is earlier than 0:3ES-13.9.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100576005" comment="redhat-release is earlier than 0:3WS-13.9.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100576006" comment="redhat-release is earlier than 0:3AS-13.9.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100577" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0577: freetype security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0577-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0577.html" />
          <reference source="CVE" ref_id="CVE-2010-2500" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2500.html" />
          <reference source="CVE" ref_id="CVE-2010-2527" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2527.html" />
          <reference source="CVE" ref_id="CVE-2010-2541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2541.html" />
    
    <description>FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently. These packages provide both the FreeType 1 and FreeType 2 font
engines.

An integer overflow flaw was found in the way the FreeType font engine
processed font files. If a user loaded a carefully-crafted font file with
an application linked against FreeType, it could cause the application to
crash or, possibly, execute arbitrary code with the privileges of the user
running the application. (CVE-2010-2500)

Several buffer overflow flaws were found in the FreeType demo applications.
If a user loaded a carefully-crafted font file with a demo application, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2527,
CVE-2010-2541)

Red Hat would like to thank Robert Swiecki of the Google Security Team for
the discovery of the CVE-2010-2500 and CVE-2010-2527 issues.

Note: All of the issues in this erratum only affect the FreeType 2 font
engine.

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues. The X server must be restarted
(log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-30" />
        <updated date="2010-07-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2500.html">CVE-2010-2500</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2527.html">CVE-2010-2527</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2541.html">CVE-2010-2541</cve>
                <bugzilla href="http://bugzilla.redhat.com/613167" id="613167">CVE-2010-2500 freetype: integer overflow vulnerability in smooth/ftgrays.c</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/614557" id="614557">CVE-2010-2527 Freetype demos multiple buffer overflows</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/617342" id="617342">CVE-2010-2541 Freetype ftmulti buffer overflow</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100577008" comment="freetype-utils is earlier than 0:2.1.4-15.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577009" comment="freetype-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100577002" comment="freetype is earlier than 0:2.1.4-15.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577003" comment="freetype is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100577006" comment="freetype-demos is earlier than 0:2.1.4-15.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577007" comment="freetype-demos is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100577004" comment="freetype-devel is earlier than 0:2.1.4-15.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577005" comment="freetype-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100578" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0578: freetype security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0578-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0578.html" />
          <reference source="CVE" ref_id="CVE-2010-2498" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2498.html" />
          <reference source="CVE" ref_id="CVE-2010-2499" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2499.html" />
          <reference source="CVE" ref_id="CVE-2010-2500" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2500.html" />
          <reference source="CVE" ref_id="CVE-2010-2519" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2519.html" />
          <reference source="CVE" ref_id="CVE-2010-2527" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2527.html" />
          <reference source="CVE" ref_id="CVE-2010-2541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2541.html" />
    
    <description>FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently. The freetype packages for Red Hat Enterprise Linux 4 provide
both the FreeType 1 and FreeType 2 font engines. The freetype packages for
Red Hat Enterprise Linux 5 provide only the FreeType 2 font engine.

An invalid memory management flaw was found in the way the FreeType font
engine processed font files. If a user loaded a carefully-crafted font file
with an application linked against FreeType, it could cause the application
to crash or, possibly, execute arbitrary code with the privileges of the
user running the application. (CVE-2010-2498)

An integer overflow flaw was found in the way the FreeType font engine
processed font files. If a user loaded a carefully-crafted font file with
an application linked against FreeType, it could cause the application to
crash or, possibly, execute arbitrary code with the privileges of the user
running the application. (CVE-2010-2500)

Several buffer overflow flaws were found in the way the FreeType font
engine processed font files. If a user loaded a carefully-crafted font file
with an application linked against FreeType, it could cause the application
to crash or, possibly, execute arbitrary code with the privileges of the
user running the application. (CVE-2010-2499, CVE-2010-2519)

Several buffer overflow flaws were found in the FreeType demo applications.
If a user loaded a carefully-crafted font file with a demo application, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2527,
CVE-2010-2541)

Red Hat would like to thank Robert Swiecki of the Google Security Team for
the discovery of the CVE-2010-2498, CVE-2010-2500, CVE-2010-2499,
CVE-2010-2519, and CVE-2010-2527 issues.

Note: All of the issues in this erratum only affect the FreeType 2 font
engine.

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues. The X server must be restarted
(log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-07-30" />
        <updated date="2010-07-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2498.html">CVE-2010-2498</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2499.html">CVE-2010-2499</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2500.html">CVE-2010-2500</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2519.html">CVE-2010-2519</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2527.html">CVE-2010-2527</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2541.html">CVE-2010-2541</cve>
                <bugzilla href="http://bugzilla.redhat.com/613160" id="613160">CVE-2010-2498 freetype: invalid free vulnerability with possible heap corruption</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/613162" id="613162">CVE-2010-2499 freetype: buffer overflow vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/613167" id="613167">CVE-2010-2500 freetype: integer overflow vulnerability in smooth/ftgrays.c</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/613194" id="613194">CVE-2010-2519 freetype: heap buffer overflow vulnerability when processing certain font files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/614557" id="614557">CVE-2010-2527 Freetype demos multiple buffer overflows</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/617342" id="617342">CVE-2010-2541 Freetype ftmulti buffer overflow</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100578002" comment="freetype is earlier than 0:2.2.1-25.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578003" comment="freetype is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100578006" comment="freetype-demos is earlier than 0:2.2.1-25.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578007" comment="freetype-demos is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100578004" comment="freetype-devel is earlier than 0:2.2.1-25.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578005" comment="freetype-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100578013" comment="freetype-utils is earlier than 0:2.1.9-14.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577009" comment="freetype-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100578009" comment="freetype is earlier than 0:2.1.9-14.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577003" comment="freetype is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100578015" comment="freetype-demos is earlier than 0:2.1.9-14.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577007" comment="freetype-demos is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100578011" comment="freetype-devel is earlier than 0:2.1.9-14.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577005" comment="freetype-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100580" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0580: tomcat5 security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0580-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0580.html" />
          <reference source="CVE" ref_id="CVE-2009-2693" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2693.html" />
          <reference source="CVE" ref_id="CVE-2009-2696" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2696.html" />
          <reference source="CVE" ref_id="CVE-2009-2902" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-2902.html" />
          <reference source="CVE" ref_id="CVE-2010-2227" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2227.html" />
    
    <description>Apache Tomcat is a servlet container for the Java Servlet and JavaServer
Pages (JSP) technologies.

A flaw was found in the way Tomcat handled the Transfer-Encoding header in
HTTP requests. A specially-crafted HTTP request could prevent Tomcat from
sending replies, or cause Tomcat to return truncated replies, or replies
containing data related to the requests of other users, for all subsequent
HTTP requests. (CVE-2010-2227)

The Tomcat security update RHSA-2009:1164 did not, unlike the erratum text
stated, provide a fix for CVE-2009-0781, a cross-site scripting (XSS) flaw
in the examples calendar application. With some web browsers, remote
attackers could use this flaw to inject arbitrary web script or HTML via
the "time" parameter. (CVE-2009-2696)

Two directory traversal flaws were found in the Tomcat deployment process.
A specially-crafted WAR file could, when deployed, cause a file to be
created outside of the web root into any directory writable by the Tomcat
user, or could lead to the deletion of files in the Tomcat host's work
directory. (CVE-2009-2693, CVE-2009-2902)

Users of Tomcat should upgrade to these updated packages, which contain
backported patches to resolve these issues. Tomcat must be restarted for
this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-02" />
        <updated date="2010-08-02" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2693.html">CVE-2009-2693</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2696.html">CVE-2009-2696</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-2902.html">CVE-2009-2902</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2227.html">CVE-2010-2227</cve>
                <bugzilla href="http://bugzilla.redhat.com/559738" id="559738">CVE-2009-2693 tomcat: unexpected file deletion and/or alteration</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/559761" id="559761">CVE-2009-2902 tomcat: unexpected file deletion in work directory</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/612799" id="612799">CVE-2010-2227 tomcat: information leak vulnerability in the handling of 'Transfer-Encoding' header</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/616717" id="616717">CVE-2009-2696 tomcat: missing fix for CVE-2009-0781</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580020" comment="tomcat5-servlet-2.4-api is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580021" comment="tomcat5-servlet-2.4-api is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580004" comment="tomcat5-admin-webapps is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580005" comment="tomcat5-admin-webapps is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580006" comment="tomcat5-jsp-2.0-api is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580007" comment="tomcat5-jsp-2.0-api is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580018" comment="tomcat5-servlet-2.4-api-javadoc is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580019" comment="tomcat5-servlet-2.4-api-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580010" comment="tomcat5-server-lib is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580011" comment="tomcat5-server-lib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580014" comment="tomcat5-jasper is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580015" comment="tomcat5-jasper is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580016" comment="tomcat5-jsp-2.0-api-javadoc is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580017" comment="tomcat5-jsp-2.0-api-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580012" comment="tomcat5-common-lib is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580013" comment="tomcat5-common-lib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580022" comment="tomcat5-jasper-javadoc is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580023" comment="tomcat5-jasper-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580008" comment="tomcat5-webapps is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580009" comment="tomcat5-webapps is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100580002" comment="tomcat5 is earlier than 0:5.5.23-0jpp.9.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100580003" comment="tomcat5 is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100585" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0585: lftp security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0585-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0585.html" />
          <reference source="CVE" ref_id="CVE-2010-2251" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2251.html" />
    
    <description>LFTP is a sophisticated file transfer program for the FTP and HTTP
protocols. Like Bash, it has job control and uses the Readline library for
input. It has bookmarks, built-in mirroring, and can transfer several files
in parallel. It is designed with reliability in mind.

It was discovered that lftp trusted the file name provided in the
Content-Disposition HTTP header. A malicious HTTP server could use this
flaw to write or overwrite files in the current working directory of a
victim running lftp, by sending a different file from what the victim
requested. (CVE-2010-2251)

To correct this flaw, the following changes were made to lftp: the
"xfer:clobber" option now defaults to "no", causing lftp to not overwrite
existing files, and a new option, "xfer:auto-rename", which defaults to
"no", has been introduced to control whether lftp should use
server-suggested file names. Refer to the "Settings" section of the lftp(1)
manual page for additional details on changing lftp settings.

All lftp users should upgrade to this updated package, which contains a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-02" />
        <updated date="2010-08-02" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2251.html">CVE-2010-2251</cve>
                <bugzilla href="http://bugzilla.redhat.com/591580" id="591580">CVE-2010-2251 lftp: multiple HTTP client download filename vulnerability [OCERT 2010-001]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100585002" comment="lftp is earlier than 0:3.7.11-4.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100585003" comment="lftp is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100603" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0603: gnupg2 security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0603-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0603.html" />
          <reference source="CVE" ref_id="CVE-2010-2547" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2547.html" />
    
    <description>The GNU Privacy Guard (GnuPG or GPG) is a tool for encrypting data and
creating digital signatures, compliant with the proposed OpenPGP Internet
standard and the S/MIME standard.

A use-after-free flaw was found in the way gpgsm, a Cryptographic Message
Syntax (CMS) encryption and signing tool, handled X.509 certificates with
a large number of Subject Alternate Names. A specially-crafted X.509
certificate could, when imported, cause gpgsm to crash or, possibly,
execute arbitrary code. (CVE-2010-2547)

All gnupg2 users should upgrade to this updated package, which contains a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-04" />
        <updated date="2010-08-04" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2547.html">CVE-2010-2547</cve>
                <bugzilla href="http://bugzilla.redhat.com/618156" id="618156">CVE-2010-2547 GnuPG 2: use-after-free when importing certificate with many alternate names</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100603002" comment="gnupg2 is earlier than 0:2.0.10-3.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100603003" comment="gnupg2 is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100606" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0606: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0606-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0606.html" />
          <reference source="CVE" ref_id="CVE-2010-2248" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2248.html" />
          <reference source="CVE" ref_id="CVE-2010-2521" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2521.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* a flaw was found in the CIFSSMBWrite() function in the Linux kernel
Common Internet File System (CIFS) implementation. A remote attacker could
send a specially-crafted SMB response packet to a target CIFS client,
resulting in a kernel panic (denial of service). (CVE-2010-2248, Important)

* buffer overflow flaws were found in the Linux kernel's implementation of
the server-side External Data Representation (XDR) for the Network File
System (NFS) version 4. An attacker on the local network could send a
specially-crafted large compound request to the NFSv4 server, which could
possibly result in a kernel panic (denial of service) or, potentially, code
execution. (CVE-2010-2521, Important)

This update also fixes the following bug:

* the rpc_call_async() function in the SUN Remote Procedure Call (RPC)
subsystem in the Linux kernel had a reference counting bug. In certain
situations, some Network Lock Manager (NLM) messages may have triggered
this bug on NFSv2 and NFSv3 servers, leading to a kernel panic (with
"kernel BUG at fs/lockd/host.c:[xxx]!" logged to "/var/log/messages").
(BZ#612962)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-05" />
        <updated date="2010-08-05" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2248.html">CVE-2010-2248</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2521.html">CVE-2010-2521</cve>
                <bugzilla href="http://bugzilla.redhat.com/608583" id="608583">CVE-2010-2248 kernel: cifs: Fix a kernel BUG with remote OS/2 server</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/612028" id="612028">CVE-2010-2521 kernel: nfsd4: bug in read_buf</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/612962" id="612962">[4.4] The kernel BUG occurred with the message 'fs/lockd/host.c:252!' [rhel-4.8.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606002" comment="kernel is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606022" comment="kernel-doc is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606004" comment="kernel-devel is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606006" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606018" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606014" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606012" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606010" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606008" comment="kernel-xenU is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606020" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100606016" comment="kernel-smp is earlier than 0:2.6.9-89.0.28.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100607" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0607: freetype security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0607-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0607.html" />
          <reference source="CVE" ref_id="CVE-2010-1797" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1797.html" />
    
    <description>FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently. The freetype packages for Red Hat Enterprise Linux 3 and 4
provide both the FreeType 1 and FreeType 2 font engines. The freetype
packages for Red Hat Enterprise Linux 5 provide only the FreeType 2 font
engine.

Two stack overflow flaws were found in the way the FreeType font engine
processed certain Compact Font Format (CFF) character strings (opcodes). If
a user loaded a specially-crafted font file with an application linked
against FreeType, it could cause the application to crash or, possibly,
execute arbitrary code with the privileges of the user running the
application. (CVE-2010-1797)

Red Hat would like to thank Braden Thomas of the Apple Product Security
team for reporting these issues.

Note: CVE-2010-1797 only affects the FreeType 2 font engine.

Users are advised to upgrade to these updated packages, which contain a
backported patch to correct these issues. The X server must be restarted
(log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-05" />
        <updated date="2010-08-05" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1797.html">CVE-2010-1797</cve>
                <bugzilla href="http://bugzilla.redhat.com/621144" id="621144">CVE-2010-1797 FreeType: Multiple stack overflows by processing CFF opcodes</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607002" comment="freetype is earlier than 0:2.2.1-26.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578003" comment="freetype is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607004" comment="freetype-demos is earlier than 0:2.2.1-26.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578007" comment="freetype-demos is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607006" comment="freetype-devel is earlier than 0:2.2.1-26.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578005" comment="freetype-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607011" comment="freetype-utils is earlier than 0:2.1.4-16.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577009" comment="freetype-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607009" comment="freetype is earlier than 0:2.1.4-16.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577003" comment="freetype is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607015" comment="freetype-demos is earlier than 0:2.1.4-16.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577007" comment="freetype-demos is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607013" comment="freetype-devel is earlier than 0:2.1.4-16.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577005" comment="freetype-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607020" comment="freetype-utils is earlier than 0:2.1.9-15.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577009" comment="freetype-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607018" comment="freetype is earlier than 0:2.1.9-15.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577003" comment="freetype is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607021" comment="freetype-demos is earlier than 0:2.1.9-15.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577007" comment="freetype-demos is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100607019" comment="freetype-devel is earlier than 0:2.1.9-15.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577005" comment="freetype-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100610" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0610: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0610-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0610.html" />
          <reference source="CVE" ref_id="CVE-2010-1084" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1084.html" />
          <reference source="CVE" ref_id="CVE-2010-2066" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2066.html" />
          <reference source="CVE" ref_id="CVE-2010-2070" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2070.html" />
          <reference source="CVE" ref_id="CVE-2010-2226" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2226.html" />
          <reference source="CVE" ref_id="CVE-2010-2248" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2248.html" />
          <reference source="CVE" ref_id="CVE-2010-2521" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2521.html" />
          <reference source="CVE" ref_id="CVE-2010-2524" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2524.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* instances of unsafe sprintf() use were found in the Linux kernel
Bluetooth implementation. Creating a large number of Bluetooth L2CAP, SCO,
or RFCOMM sockets could result in arbitrary memory pages being overwritten.
A local, unprivileged user could use this flaw to cause a kernel panic
(denial of service) or escalate their privileges. (CVE-2010-1084,
Important)

* a flaw was found in the Xen hypervisor implementation when using the
Intel Itanium architecture, allowing guests to enter an unsupported state.
An unprivileged guest user could trigger this flaw by setting the BE (Big
Endian) bit of the Processor Status Register (PSR), leading to the guest
crashing (denial of service). (CVE-2010-2070, Important)

* a flaw was found in the CIFSSMBWrite() function in the Linux kernel
Common Internet File System (CIFS) implementation. A remote attacker could
send a specially-crafted SMB response packet to a target CIFS client,
resulting in a kernel panic (denial of service). (CVE-2010-2248, Important)

* buffer overflow flaws were found in the Linux kernel's implementation of
the server-side External Data Representation (XDR) for the Network File
System (NFS) version 4. An attacker on the local network could send a
specially-crafted large compound request to the NFSv4 server, which could
possibly result in a kernel panic (denial of service) or, potentially, code
execution. (CVE-2010-2521, Important)

* a flaw was found in the handling of the SWAPEXT IOCTL in the Linux kernel
XFS file system implementation. A local user could use this flaw to read
write-only files, that they do not own, on an XFS file system. This could
lead to unintended information disclosure. (CVE-2010-2226, Moderate)

* a flaw was found in the dns_resolver upcall used by CIFS. A local,
unprivileged user could redirect a Microsoft Distributed File System link
to another IP address, tricking the client into mounting the share from a
server of the user's choosing. (CVE-2010-2524, Moderate)

* a missing check was found in the mext_check_arguments() function in the
ext4 file system code. A local user could use this flaw to cause the
MOVE_EXT IOCTL to overwrite the contents of an append-only file on an ext4
file system, if they have write permissions for that file. (CVE-2010-2066,
Low)

Red Hat would like to thank Neil Brown for reporting CVE-2010-1084, and Dan
Rosenberg for reporting CVE-2010-2226 and CVE-2010-2066.

This update also fixes several bugs. Documentation for these bug fixes will
be available shortly from the Technical Notes document linked to in the
References.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-10" />
        <updated date="2010-08-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1084.html">CVE-2010-1084</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2066.html">CVE-2010-2066</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2070.html">CVE-2010-2070</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2226.html">CVE-2010-2226</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2248.html">CVE-2010-2248</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2521.html">CVE-2010-2521</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2524.html">CVE-2010-2524</cve>
                <bugzilla href="http://bugzilla.redhat.com/576018" id="576018">CVE-2010-1084 kernel: bluetooth: potential bad memory access with sysfs files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/586415" id="586415">CVE-2010-2070 /kernel/security/CVE-2006-0742 test cause kernel-xen panic on ia64</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/601006" id="601006">CVE-2010-2066 kernel: ext4: Make sure the MOVE_EXT ioctl can't overwrite append-only files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/605158" id="605158">CVE-2010-2226 kernel: xfs swapext ioctl minor security issue</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/607483" id="607483">[Stratus 5.6 bug] Circular lock dep warning on cfq_exit_lock [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/607486" id="607486">RHEL5u4  2.6.18-160.el5:  modprobe of acpiphp on system with no hotpluggable stots causes kernel PANIC [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/608583" id="608583">CVE-2010-2248 kernel: cifs: Fix a kernel BUG with remote OS/2 server</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/612028" id="612028">CVE-2010-2521 kernel: nfsd4: bug in read_buf</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/612166" id="612166">CVE-2010-2524 kernel: dns_resolver upcall security issue</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/612539" id="612539">[5.4]The addition of SAS disk fails because of the timeout. [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/613688" id="613688">[NetApp 5.6 bug] QLogic FC firmware errors seen on RHEL 5.5 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/613900" id="613900">[RHEL5.5] TCP bandwidth problems with TPA and bnx2x cards [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/615260" id="615260">[Broadcom 5.6 bug] cnic: Panic in cnic_iscsi_nl_msg_recv() [rhel-5.5.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610004" comment="kernel-headers is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610002" comment="kernel is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610024" comment="kernel-doc is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610022" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610014" comment="kernel-devel is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610012" comment="kernel-debug is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610016" comment="kernel-kdump is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610008" comment="kernel-xen-devel is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610006" comment="kernel-debug-devel is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610020" comment="kernel-PAE is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610018" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100610010" comment="kernel-xen is earlier than 0:2.6.18-194.11.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100615" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0615: libvirt security and bug fix update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0615-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0615.html" />
          <reference source="CVE" ref_id="CVE-2010-2239" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2239.html" />
          <reference source="CVE" ref_id="CVE-2010-2242" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2242.html" />
    
    <description>The libvirt library is a C API for managing and interacting with the
virtualization capabilities of Linux and other operating systems. In
addition, libvirt provides tools for remotely managing virtualized systems.

It was found that libvirt did not set the user-defined backing store format
when creating a new image, possibly resulting in applications having to
probe the backing store to discover the format. A privileged guest user
could use this flaw to read arbitrary files on the host. (CVE-2010-2239)

It was found that libvirt created insecure iptables rules on the host when
a guest system was configured for IP masquerading, allowing the guest to
use privileged ports on the host when accessing network resources. A
privileged guest user could use this flaw to access network resources that
would otherwise not be accessible to the guest. (CVE-2010-2242)

Red Hat would like to thank Jeremy Nickurak for reporting the CVE-2010-2242
issue.

This update also fixes the following bugs:

* a Linux software bridge assumes the MAC address of the enslaved interface
with the numerically lowest MAC address. When the bridge changes its MAC
address, for a period of time it does not relay packets across network
segments, resulting in a temporary network "blackout". The bridge should
thus avoid changing its MAC address in order not to disrupt network
communications.

The Linux kernel assigns network TAP devices a random MAC address.
Occasionally, this random MAC address is lower than that of the physical
interface which is enslaved (for example, eth0 or eth1), which causes the
bridge to change its MAC address, thereby disrupting network communications
for a period of time.

With this update, libvirt now sets an explicit MAC address for all TAP
devices created using the configured MAC address from the XML, but with the
high bit set to 0xFE. The result is that TAP device MAC addresses are now
numerically greater than those for physical interfaces, and bridges should
no longer attempt to switch their MAC address to that of the TAP device,
thus avoiding potential spurious network disruptions. (BZ#617243)

* a memory leak in the libvirt driver for the Xen hypervisor has been fixed
with this update. (BZ#619711)

* the xm and virsh management user interfaces for virtual guests can be
called on the command line to list the number of active guests. However,
under certain circumstances, running the "virsh list" command resulted in
virsh not listing all of the virtual guests that were active (that is,
running) at the time. This update incorporates a fix that matches the logic
used for determining active guests with that of "xm list", such that both
commands should now list the same number of active virtual guests under all
circumstances. (BZ#618200)

All users of libvirt are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. After installing
the updated packages, the system must be rebooted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-10" />
        <updated date="2010-08-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2239.html">CVE-2010-2239</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2242.html">CVE-2010-2242</cve>
                <bugzilla href="http://bugzilla.redhat.com/602455" id="602455">CVE-2010-2242 libvirt: improperly mapped source privileged ports may allow for obtaining privileged resources on the host</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/607812" id="607812">CVE-2010-2239 libvirt: not setting user defined backing store format when creating new image</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/617243" id="617243">libvirt should not use the MAC address assigned to tap devices/vnet interfaces by the TAP/TUN driver.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/618200" id="618200">Discrepancy  between xm and virsh output when listing active Xen domains</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/619711" id="619711">Memory leak in libvirtd</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100615004" comment="libvirt-devel is earlier than 0:0.6.3-33.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100615005" comment="libvirt-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100615002" comment="libvirt is earlier than 0:0.6.3-33.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100615003" comment="libvirt is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100615006" comment="libvirt-python is earlier than 0:0.6.3-33.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100615007" comment="libvirt-python is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100616" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0616: dbus-glib security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0616-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0616.html" />
          <reference source="CVE" ref_id="CVE-2010-1172" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1172.html" />
    
    <description>dbus-glib is an add-on library to integrate the standard D-Bus library with
the GLib main loop and threading model. NetworkManager is a network link
manager that attempts to keep a wired or wireless network connection active
at all times.

It was discovered that dbus-glib did not enforce the "access" flag on
exported GObject properties. If such a property were read/write internally
but specified as read-only externally, a malicious, local user could use
this flaw to modify that property of an application. Such a change could
impact the application's behavior (for example, if an IP address were
changed the network may not come up properly after reboot) and possibly
lead to a denial of service. (CVE-2010-1172)

Due to the way dbus-glib translates an application's XML definitions of
service interfaces and properties into C code at application build time,
applications built against dbus-glib that use read-only properties needed
to be rebuilt to fully fix the flaw. As such, this update provides
NetworkManager packages that have been rebuilt against the updated
dbus-glib packages. No other applications shipped with Red Hat Enterprise
Linux 5 were affected.

All dbus-glib and NetworkManager users are advised to upgrade to these
updated packages, which contain a backported patch to correct this issue.
Running instances of NetworkManager must be restarted (service
NetworkManager restart) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-10" />
        <updated date="2010-08-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1172.html">CVE-2010-1172</cve>
                <bugzilla href="http://bugzilla.redhat.com/585394" id="585394">CVE-2010-1172 dbus-glib: property access not validated</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100616004" comment="dbus-glib-devel is earlier than 0:0.73-10.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100616005" comment="dbus-glib-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100616002" comment="dbus-glib is earlier than 0:0.73-10.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100616003" comment="dbus-glib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100616014" comment="NetworkManager-glib is earlier than 1:0.7.0-10.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108005" comment="NetworkManager-glib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100616012" comment="NetworkManager-gnome is earlier than 1:0.7.0-10.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108007" comment="NetworkManager-gnome is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100616008" comment="NetworkManager-devel is earlier than 1:0.7.0-10.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108009" comment="NetworkManager-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100616010" comment="NetworkManager-glib-devel is earlier than 1:0.7.0-10.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108011" comment="NetworkManager-glib-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100616006" comment="NetworkManager is earlier than 1:0.7.0-10.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100108003" comment="NetworkManager is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100623" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0623: flash-plugin security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0623-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0623.html" />
          <reference source="CVE" ref_id="CVE-2010-0209" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0209.html" />
          <reference source="CVE" ref_id="CVE-2010-2213" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2213.html" />
          <reference source="CVE" ref_id="CVE-2010-2214" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2214.html" />
          <reference source="CVE" ref_id="CVE-2010-2215" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2215.html" />
          <reference source="CVE" ref_id="CVE-2010-2216" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2216.html" />
    
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes multiple vulnerabilities in Adobe Flash Player. These
vulnerabilities are detailed on the Adobe security page APSB10-16, listed
in the References section.

Multiple security flaws were found in the way flash-plugin displayed
certain SWF content. An attacker could use these flaws to create a
specially-crafted SWF file that would cause flash-plugin to crash or,
potentially, execute arbitrary code when the victim loaded a page
containing the specially-crafted SWF content. (CVE-2010-0209,
CVE-2010-2213, CVE-2010-2214, CVE-2010-2216)

A clickjacking flaw was discovered in flash-plugin. A specially-crafted SWF
file could trick a user into unintentionally or mistakenly clicking a link
or a dialog. (CVE-2010-2215)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.1.82.76.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-11" />
        <updated date="2010-08-11" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0209.html">CVE-2010-0209</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2213.html">CVE-2010-2213</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2214.html">CVE-2010-2214</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2215.html">CVE-2010-2215</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2216.html">CVE-2010-2216</cve>
                <bugzilla href="http://bugzilla.redhat.com/622947" id="622947">CVE-2010-0209 CVE-2010-2213 CVE-2010-2214 CVE-2010-2215 CVE-2010-2216 flash-plugin: multiple security flaws (APSB10-16)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100623002" comment="flash-plugin is earlier than 0:10.1.82.76-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100102003" comment="flash-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100625" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0625: wireshark security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0625-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0625.html" />
          <reference source="CVE" ref_id="CVE-2010-1455" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1455.html" />
          <reference source="CVE" ref_id="CVE-2010-2283" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2283.html" />
          <reference source="CVE" ref_id="CVE-2010-2284" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2284.html" />
          <reference source="CVE" ref_id="CVE-2010-2286" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2286.html" />
          <reference source="CVE" ref_id="CVE-2010-2287" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2287.html" />
          <reference source="CVE" ref_id="CVE-2010-2995" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2995.html" />
    
    <description>Wireshark is a program for monitoring network traffic. Wireshark was
previously known as Ethereal.

Multiple buffer overflow flaws were found in the Wireshark SigComp
Universal Decompressor Virtual Machine (UDVM) dissector. If Wireshark read
a malformed packet off a network or opened a malicious dump file, it could
crash or, possibly, execute arbitrary code as the user running Wireshark.
(CVE-2010-2287, CVE-2010-2995)

Several denial of service flaws were found in Wireshark. Wireshark could
crash or stop responding if it read a malformed packet off a network, or
opened a malicious dump file. (CVE-2010-1455, CVE-2010-2283, CVE-2010-2284,
CVE-2010-2286)

Users of Wireshark should upgrade to these updated packages, which contain
Wireshark version 1.0.15, and resolve these issues. All running instances
of Wireshark must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-11" />
        <updated date="2010-08-11" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1455.html">CVE-2010-1455</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2283.html">CVE-2010-2283</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2284.html">CVE-2010-2284</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2286.html">CVE-2010-2286</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2287.html">CVE-2010-2287</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2995.html">CVE-2010-2995</cve>
                <bugzilla href="http://bugzilla.redhat.com/590613" id="590613">CVE-2010-1455 wireshark: DOCSIS dissector crash</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/604290" id="604290">CVE-2010-2283 wireshark: SMB dissector NULL pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/604292" id="604292">CVE-2010-2284 wireshark: ASN.1 BER dissector stack overrun</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/604302" id="604302">CVE-2010-2286 wireshark: SigComp UDVM dissector infinite loop</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/604308" id="604308">CVE-2010-2287 CVE-2010-2995 wireshark: SigComp UDVM dissector buffer overruns</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100625002" comment="wireshark is earlier than 0:1.0.15-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360003" comment="wireshark is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100625004" comment="wireshark-gnome is earlier than 0:1.0.15-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360005" comment="wireshark-gnome is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100625007" comment="wireshark is earlier than 0:1.0.15-EL3.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360008" comment="wireshark is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100625009" comment="wireshark-gnome is earlier than 0:1.0.15-EL3.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360010" comment="wireshark-gnome is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100625012" comment="wireshark is earlier than 0:1.0.15-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360008" comment="wireshark is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100625013" comment="wireshark-gnome is earlier than 0:1.0.15-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100360010" comment="wireshark-gnome is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100627" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0627: kvm security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0627-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0627.html" />
          <reference source="CVE" ref_id="CVE-2010-0431" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0431.html" />
          <reference source="CVE" ref_id="CVE-2010-0435" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0435.html" />
          <reference source="CVE" ref_id="CVE-2010-2784" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2784.html" />
    
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. KVM is a Linux kernel module built for
the standard Red Hat Enterprise Linux kernel.

It was found that QEMU-KVM on the host did not validate all pointers
provided from a guest system's QXL graphics card driver. A privileged guest
user could use this flaw to cause the host to dereference an invalid
pointer, causing the guest to crash (denial of service) or, possibly,
resulting in the privileged guest user escalating their privileges on the
host. (CVE-2010-0431)

A flaw was found in QEMU-KVM, allowing the guest some control over the
index used to access the callback array during sub-page MMIO
initialization. A privileged guest user could use this flaw to crash the
guest (denial of service) or, possibly, escalate their privileges on the
host. (CVE-2010-2784)

A NULL pointer dereference flaw was found when the host system had a
processor with the Intel VT-x extension enabled. A privileged guest user
could use this flaw to trick the host into emulating a certain instruction,
which could crash the host (denial of service). (CVE-2010-0435)

This update also fixes the following bugs:

* running a "qemu-img" check on a faulty virtual machine image ended with a
segmentation fault. With this update, the segmentation fault no longer
occurs when running the "qemu-img" check. (BZ#610342)

* when attempting to transfer a file between two guests that were joined in
the same virtual LAN (VLAN), the receiving guest unexpectedly quit. With
this update, the transfer completes successfully. (BZ#610343)

* installation of a system was occasionally failing in KVM. This was caused
by KVM using wrong permissions for large guest pages. With this update, the
installation completes successfully. (BZ#616796)

* previously, the migration process would fail for a virtual machine
because the virtual machine could not map all the memory. This was caused
by a conflict that was initiated when a virtual machine was initially run
and then migrated right away. With this update, the conflict no longer
occurs and the migration process no longer fails. (BZ#618205)

* using a thinly provisioned VirtIO disk on iSCSI storage and performing a
"qemu-img" check during an "e_no_space" event returned cluster errors. With
this update, the errors no longer appear. (BZ#618206)

All KVM users should upgrade to these updated packages, which contain
backported patches to resolve these issues. Note: The procedure in the
Solution section must be performed before this update will take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-19" />
        <updated date="2010-08-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0431.html">CVE-2010-0431</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0435.html">CVE-2010-0435</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2784.html">CVE-2010-2784</cve>
                <bugzilla href="http://bugzilla.redhat.com/568809" id="568809">CVE-2010-0431 qemu: Insufficient guest provided pointers validation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/570528" id="570528">CVE-2010-0435 kvm: vmx null pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/610342" id="610342">[kvm] segmentation fault when running qemu-img check on faulty image</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/610343" id="610343">Virtio: Transfer file caused guest in same vlan abnormally quit</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/616796" id="616796">KVM uses wrong permissions for large guest pages</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/618205" id="618205">SPICE - race in KVM/Spice would cause migration to fail (slots are not registered properly?)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/618206" id="618206">[kvm] qemu image check returns cluster errors when using virtIO block (thinly provisioned) during e_no_space events (along with EIO errors)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/619411" id="619411">CVE-2010-2784 qemu: insufficient constraints checking in exec.c:subpage_register()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100627006" comment="kvm-qemu-img is earlier than 0:83-164.el5_5.21" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088009" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100627002" comment="kvm is earlier than 0:83-164.el5_5.21" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088003" comment="kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100627008" comment="kmod-kvm is earlier than 0:83-164.el5_5.21" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088007" comment="kmod-kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100627004" comment="kvm-tools is earlier than 0:83-164.el5_5.21" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088005" comment="kvm-tools is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100632" version="504" class="patch">
      <metadata>
        <title>RHSA-2010:0632: qspice-client security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0632-03" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0632.html" />
          <reference source="CVE" ref_id="CVE-2010-2792" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2792.html" />
    
    <description>The Simple Protocol for Independent Computing Environments (SPICE) is a
remote display protocol used in Red Hat Enterprise Linux for viewing
virtualized guests running on the Kernel-based Virtual Machine (KVM)
hypervisor, or on Red Hat Enterprise Virtualization Hypervisor.

The qspice-client package provides the client side of the SPICE protocol.

A race condition was found in the way the SPICE Mozilla Firefox plug-in and
the SPICE client communicated. A local attacker could use this flaw to
trick the plug-in and the SPICE client into communicating over an
attacker-controlled socket, possibly gaining access to authentication
details, or resulting in a man-in-the-middle attack on the SPICE
connection. (CVE-2010-2792)

Users of qspice-client should upgrade to this updated package, which
contains a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-25" />
        <updated date="2010-08-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2792.html">CVE-2010-2792</cve>
                <bugzilla href="http://bugzilla.redhat.com/620350" id="620350">CVE-2010-2792 spice-xpi/qspice-client unix socket race</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100632002" comment="qspice-client is earlier than 0:0.3.0-4.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100632003" comment="qspice-client is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100633" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0633: qspice security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0633-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0633.html" />
          <reference source="CVE" ref_id="CVE-2010-0428" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0428.html" />
          <reference source="CVE" ref_id="CVE-2010-0429" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0429.html" />
    
    <description>The Simple Protocol for Independent Computing Environments (SPICE) is a
remote display protocol used in Red Hat Enterprise Linux for viewing
virtualized guests running on the Kernel-based Virtual Machine (KVM)
hypervisor, or on Red Hat Enterprise Virtualization Hypervisor.

It was found that the libspice component of QEMU-KVM on the host did not
validate all pointers provided from a guest system's QXL graphics card
driver. A privileged guest user could use this flaw to cause the host to
dereference an invalid pointer, causing the guest to crash (denial of
service) or, possibly, resulting in the privileged guest user escalating
their privileges on the host. (CVE-2010-0428)

It was found that the libspice component of QEMU-KVM on the host could be
forced to perform certain memory management operations on memory addresses
controlled by a guest. A privileged guest user could use this flaw to crash
the guest (denial of service) or, possibly, escalate their privileges on
the host. (CVE-2010-0429)

All qspice users should upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-19" />
        <updated date="2010-08-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0428.html">CVE-2010-0428</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0429.html">CVE-2010-0429</cve>
                <bugzilla href="http://bugzilla.redhat.com/568699" id="568699">CVE-2010-0428 libspice: Insufficient guest provided pointers validation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/568701" id="568701">CVE-2010-0429 libspice: Relying on guest provided data structures to indicate memory allocation</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100633002" comment="qspice is earlier than 0:0.3.0-54.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100633003" comment="qspice is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100633004" comment="qspice-libs is earlier than 0:0.3.0-54.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100633005" comment="qspice-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100633006" comment="qspice-libs-devel is earlier than 0:0.3.0-54.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100633007" comment="qspice-libs-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100636" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0636: acroread security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0636-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0636.html" />
          <reference source="CVE" ref_id="CVE-2010-0209" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0209.html" />
          <reference source="CVE" ref_id="CVE-2010-2213" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2213.html" />
          <reference source="CVE" ref_id="CVE-2010-2214" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2214.html" />
          <reference source="CVE" ref_id="CVE-2010-2215" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2215.html" />
          <reference source="CVE" ref_id="CVE-2010-2216" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2216.html" />
          <reference source="CVE" ref_id="CVE-2010-2862" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2862.html" />
    
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes a vulnerability in Adobe Reader. This vulnerability is
detailed on the Adobe security page APSB10-17, listed in the References
section. A specially-crafted PDF file could cause Adobe Reader to crash or,
potentially, execute arbitrary code as the user running Adobe Reader when
opened. (CVE-2010-2862)

Multiple security flaws were found in Adobe Flash Player embedded in Adobe
Reader. These vulnerabilities are detailed on the Adobe security page
APSB10-16, listed in the References section. A PDF file with embedded
specially-crafted SWF file could cause Adobe Reader to crash or,
potentially, execute arbitrary code as the user running Adobe Reader when
opened. (CVE-2010-0209, CVE-2010-2213, CVE-2010-2214, CVE-2010-2215,
CVE-2010-2216)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 9.3.4, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-20" />
        <updated date="2010-08-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0209.html">CVE-2010-0209</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2213.html">CVE-2010-2213</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2214.html">CVE-2010-2214</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2215.html">CVE-2010-2215</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2216.html">CVE-2010-2216</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2862.html">CVE-2010-2862</cve>
                <bugzilla href="http://bugzilla.redhat.com/621687" id="621687">CVE-2010-2862 acroread: integer overflow flaw allows remote arbitrary code execution</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/622947" id="622947">CVE-2010-0209 CVE-2010-2213 CVE-2010-2214 CVE-2010-2215 CVE-2010-2216 flash-plugin: multiple security flaws (APSB10-16)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624838" id="624838">acroread: multiple critical security flaws (APSB10-17)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100636004" comment="acroread-plugin is earlier than 0:9.3.4-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100636002" comment="acroread is earlier than 0:9.3.4-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100643" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0643: openoffice.org security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0643-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0643.html" />
          <reference source="CVE" ref_id="CVE-2010-2935" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2935.html" />
          <reference source="CVE" ref_id="CVE-2010-2936" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2936.html" />
    
    <description>OpenOffice.org is an office productivity suite that includes desktop
applications, such as a word processor, spreadsheet application,
presentation manager, formula editor, and a drawing program.

An integer truncation error, leading to a heap-based buffer overflow, was
found in the way the OpenOffice.org Impress presentation application
sanitized a file's dictionary property items. An attacker could use this
flaw to create a specially-crafted Microsoft Office PowerPoint file that,
when opened, would cause OpenOffice.org Impress to crash or, possibly,
execute arbitrary code with the privileges of the user running
OpenOffice.org Impress. (CVE-2010-2935)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way OpenOffice.org Impress processed polygons in input
documents. An attacker could use this flaw to create a specially-crafted
Microsoft Office PowerPoint file that, when opened, would cause
OpenOffice.org Impress to crash or, possibly, execute arbitrary code with
the privileges of the user running OpenOffice.org Impress. (CVE-2010-2936)

All users of OpenOffice.org are advised to upgrade to these updated
packages, which contain backported patches to correct these issues. For Red
Hat Enterprise Linux 3, this erratum provides updated openoffice.org
packages. For Red Hat Enterprise Linux 4, this erratum provides updated
openoffice.org and openoffice.org2 packages. All running instances of
OpenOffice.org applications must be restarted for this update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-23" />
        <updated date="2010-08-23" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2935.html">CVE-2010-2935</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2936.html">CVE-2010-2936</cve>
                <bugzilla href="http://bugzilla.redhat.com/622529" id="622529">CVE-2010-2935 OpenOffice.Org: Integer truncation error by parsing specially-crafted Microsoft PowerPoint document</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/622555" id="622555">CVE-2010-2936 OpenOffice.org: Heap-based buffer overflow by parsing specially-crafted Microsoft PowerPoint document</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643006" comment="openoffice.org-i18n is earlier than 0:1.1.2-48.2.0.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101162" comment="openoffice.org-i18n is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643002" comment="openoffice.org is earlier than 0:1.1.2-48.2.0.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101158" comment="openoffice.org is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643004" comment="openoffice.org-libs is earlier than 0:1.1.2-48.2.0.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101160" comment="openoffice.org-libs is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643107" comment="openoffice.org2-langpack-ms_MY is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101252" comment="openoffice.org2-langpack-ms_MY is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643065" comment="openoffice.org2-pyuno is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101234" comment="openoffice.org2-pyuno is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643059" comment="openoffice.org2-langpack-af_ZA is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101204" comment="openoffice.org2-langpack-af_ZA is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643057" comment="openoffice.org2-xsltfilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101246" comment="openoffice.org2-xsltfilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643051" comment="openoffice.org2-core is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101184" comment="openoffice.org2-core is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643033" comment="openoffice.org2-langpack-ar is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101214" comment="openoffice.org2-langpack-ar is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643025" comment="openoffice.org2-langpack-ca_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101274" comment="openoffice.org2-langpack-ca_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643021" comment="openoffice.org2-langpack-he_IL is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101222" comment="openoffice.org2-langpack-he_IL is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643099" comment="openoffice.org2-langpack-et_EE is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101202" comment="openoffice.org2-langpack-et_EE is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643083" comment="openoffice.org2-emailmerge is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101220" comment="openoffice.org2-emailmerge is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643067" comment="openoffice.org2-calc is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101262" comment="openoffice.org2-calc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643031" comment="openoffice.org2-base is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101182" comment="openoffice.org2-base is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643027" comment="openoffice.org2-langpack-ta_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101250" comment="openoffice.org2-langpack-ta_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643087" comment="openoffice.org2-langpack-el_GR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101276" comment="openoffice.org2-langpack-el_GR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643081" comment="openoffice.org2-langpack-nl is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101192" comment="openoffice.org2-langpack-nl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643055" comment="openoffice.org2-math is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101240" comment="openoffice.org2-math is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643049" comment="openoffice.org2-langpack-cy_GB is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101198" comment="openoffice.org2-langpack-cy_GB is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643029" comment="openoffice.org2-writer is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101226" comment="openoffice.org2-writer is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643011" comment="openoffice.org2-langpack-gl_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101238" comment="openoffice.org2-langpack-gl_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643085" comment="openoffice.org2-langpack-it is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101272" comment="openoffice.org2-langpack-it is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643009" comment="openoffice.org2 is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101170" comment="openoffice.org2 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643123" comment="openoffice.org2-langpack-bn is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101188" comment="openoffice.org2-langpack-bn is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643111" comment="openoffice.org2-langpack-fr is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101190" comment="openoffice.org2-langpack-fr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643105" comment="openoffice.org2-langpack-cs_CZ is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101224" comment="openoffice.org2-langpack-cs_CZ is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643103" comment="openoffice.org2-langpack-lt_LT is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101236" comment="openoffice.org2-langpack-lt_LT is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643101" comment="openoffice.org2-langpack-hu_HU is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101218" comment="openoffice.org2-langpack-hu_HU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643093" comment="openoffice.org2-langpack-th_TH is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101212" comment="openoffice.org2-langpack-th_TH is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643045" comment="openoffice.org2-langpack-sr_CS is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101242" comment="openoffice.org2-langpack-sr_CS is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643041" comment="openoffice.org2-draw is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101180" comment="openoffice.org2-draw is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643037" comment="openoffice.org2-langpack-sk_SK is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101256" comment="openoffice.org2-langpack-sk_SK is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643023" comment="openoffice.org2-langpack-de is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101200" comment="openoffice.org2-langpack-de is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643019" comment="openoffice.org2-langpack-pt_PT is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101258" comment="openoffice.org2-langpack-pt_PT is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643017" comment="openoffice.org2-langpack-bg_BG is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101230" comment="openoffice.org2-langpack-bg_BG is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643097" comment="openoffice.org2-langpack-zu_ZA is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101260" comment="openoffice.org2-langpack-zu_ZA is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643089" comment="openoffice.org2-langpack-pt_BR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101196" comment="openoffice.org2-langpack-pt_BR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643047" comment="openoffice.org2-langpack-zh_CN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101186" comment="openoffice.org2-langpack-zh_CN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643015" comment="openoffice.org2-javafilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101286" comment="openoffice.org2-javafilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643013" comment="openoffice.org2-langpack-sl_SI is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101248" comment="openoffice.org2-langpack-sl_SI is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643121" comment="openoffice.org2-langpack-es is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101178" comment="openoffice.org2-langpack-es is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643119" comment="openoffice.org2-langpack-nb_NO is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101254" comment="openoffice.org2-langpack-nb_NO is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643079" comment="openoffice.org2-langpack-eu_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101232" comment="openoffice.org2-langpack-eu_ES is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643077" comment="openoffice.org2-testtools is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101284" comment="openoffice.org2-testtools is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643075" comment="openoffice.org2-langpack-gu_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101174" comment="openoffice.org2-langpack-gu_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643063" comment="openoffice.org2-langpack-ga_IE is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101282" comment="openoffice.org2-langpack-ga_IE is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643061" comment="openoffice.org2-langpack-ru is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101176" comment="openoffice.org2-langpack-ru is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643035" comment="openoffice.org2-langpack-sv is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101268" comment="openoffice.org2-langpack-sv is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643117" comment="openoffice.org2-langpack-ko_KR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101280" comment="openoffice.org2-langpack-ko_KR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643115" comment="openoffice.org2-langpack-da_DK is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101264" comment="openoffice.org2-langpack-da_DK is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643113" comment="openoffice.org2-impress is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101278" comment="openoffice.org2-impress is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643043" comment="openoffice.org2-langpack-pa_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101270" comment="openoffice.org2-langpack-pa_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643125" comment="openoffice.org2-graphicfilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101266" comment="openoffice.org2-graphicfilter is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643109" comment="openoffice.org2-langpack-ja_JP is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101210" comment="openoffice.org2-langpack-ja_JP is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643095" comment="openoffice.org2-langpack-fi_FI is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101216" comment="openoffice.org2-langpack-fi_FI is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643091" comment="openoffice.org2-langpack-hr_HR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101172" comment="openoffice.org2-langpack-hr_HR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643073" comment="openoffice.org2-langpack-hi_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101194" comment="openoffice.org2-langpack-hi_IN is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643069" comment="openoffice.org2-langpack-zh_TW is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101208" comment="openoffice.org2-langpack-zh_TW is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643053" comment="openoffice.org2-langpack-pl_PL is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101228" comment="openoffice.org2-langpack-pl_PL is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643039" comment="openoffice.org2-langpack-tr_TR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101206" comment="openoffice.org2-langpack-tr_TR is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643071" comment="openoffice.org2-langpack-nn_NO is earlier than 1:2.0.4-5.7.0.6.1.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101244" comment="openoffice.org2-langpack-nn_NO is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643128" comment="openoffice.org-i18n is earlier than 0:1.1.5-10.6.0.7.EL4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101162" comment="openoffice.org-i18n is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643127" comment="openoffice.org is earlier than 0:1.1.5-10.6.0.7.EL4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101158" comment="openoffice.org is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643130" comment="openoffice.org-kde is earlier than 0:1.1.5-10.6.0.7.EL4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101168" comment="openoffice.org-kde is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100643129" comment="openoffice.org-libs is earlier than 0:1.1.5-10.6.0.7.EL4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100101160" comment="openoffice.org-libs is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100651" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0651: spice-xpi security and bug fix update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0651-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0651.html" />
          <reference source="CVE" ref_id="CVE-2010-2792" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2792.html" />
          <reference source="CVE" ref_id="CVE-2010-2794" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2794.html" />
    
    <description>The Simple Protocol for Independent Computing Environments (SPICE) is a
remote display protocol used in Red Hat Enterprise Linux for viewing
virtualized guests running on the Kernel-based Virtual Machine (KVM)
hypervisor, or on Red Hat Enterprise Virtualization Hypervisor.

The spice-xpi package provides a plug-in that allows the SPICE client to
run from within Mozilla Firefox.

A race condition was found in the way the SPICE Firefox plug-in and the
SPICE client communicated. A local attacker could use this flaw to trick
the plug-in and the SPICE client into communicating over an
attacker-controlled socket, possibly gaining access to authentication
details, or resulting in a man-in-the-middle attack on the SPICE
connection. (CVE-2010-2792)

It was found that the SPICE Firefox plug-in used a predictable name for its
log file. A local attacker could use this flaw to conduct a symbolic link
attack, allowing them to overwrite arbitrary files accessible to the user
running Firefox. (CVE-2010-2794)

This update also fixes the following bugs:

* a bug prevented users of Red Hat Enterprise Linux 5.5, with all updates
applied, from running the SPICE Firefox plug-in when using Firefox 3.6.4.
With this update, the plug-in works correctly with Firefox 3.6.4 and the
latest version in Red Hat Enterprise Linux 5.5, Firefox 3.6.7. (BZ#618244)

* unused code has been removed during source code refactoring. This also
resolves a bug in the SPICE Firefox plug-in that caused it to close random
file descriptors. (BZ#594006, BZ#619067)

Note: This update should be installed together with the RHSA-2010:0632
qspice-client update: https://rhn.redhat.com/errata/RHSA-2010-0632.html

Users of spice-xpi should upgrade to this updated package, which contains
backported patches to correct these issues. After installing the update,
Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-25" />
        <updated date="2010-08-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2792.html">CVE-2010-2792</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2794.html">CVE-2010-2794</cve>
                <bugzilla href="http://bugzilla.redhat.com/618244" id="618244">SPICE-XPI : Spice cannot be opened from RHEL5.5 client user-portal using FireFox 3.6.4.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/620350" id="620350">CVE-2010-2792 spice-xpi/qspice-client unix socket race</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/620356" id="620356">CVE-2010-2794 spice-xpi symlink attack</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100651002" comment="spice-xpi is earlier than 0:2.2-2.3.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100651003" comment="spice-xpi is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100652" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0652: ImageMagick security and bug fix update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0652-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0652.html" />
          <reference source="CVE" ref_id="CVE-2009-1882" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1882.html" />
    
    <description>ImageMagick is an image display and manipulation tool for the X Window
System that can read and write multiple image formats.

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the ImageMagick routine responsible for creating X11 images. An
attacker could create a specially-crafted image file that, when opened by a
victim, would cause ImageMagick to crash or, potentially, execute arbitrary
code. (CVE-2009-1882)

This update also fixes the following bug:

* previously, portions of certain RGB images on the right side were not
rendered and left black when converting or displaying them. With this
update, RGB images display correctly. (BZ#625058)

Users of ImageMagick are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. All running
instances of ImageMagick must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-25" />
        <updated date="2010-08-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1882.html">CVE-2009-1882</cve>
                <bugzilla href="http://bugzilla.redhat.com/503017" id="503017">CVE-2009-1882 ImageMagick, GraphicsMagick: Integer overflow in the routine creating X11 images</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625058" id="625058">CRM.1902920 - Issue displaying SGI image with ImageMagick</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100652008" comment="ImageMagick-c++-devel is earlier than 0:6.2.8.0-4.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100652009" comment="ImageMagick-c++-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100652006" comment="ImageMagick-devel is earlier than 0:6.2.8.0-4.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100652007" comment="ImageMagick-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100652010" comment="ImageMagick-perl is earlier than 0:6.2.8.0-4.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100652011" comment="ImageMagick-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100652002" comment="ImageMagick is earlier than 0:6.2.8.0-4.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100652003" comment="ImageMagick is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100652004" comment="ImageMagick-c++ is earlier than 0:6.2.8.0-4.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100652005" comment="ImageMagick-c++ is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100653" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0653: ImageMagick security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0653-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0653.html" />
          <reference source="CVE" ref_id="CVE-2009-1882" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-1882.html" />
    
    <description>ImageMagick is an image display and manipulation tool for the X Window
System that can read and write multiple image formats.

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the ImageMagick routine responsible for creating X11 images. An
attacker could create a specially-crafted image file that, when opened by a
victim, would cause ImageMagick to crash or, potentially, execute arbitrary
code. (CVE-2009-1882)

Users of ImageMagick are advised to upgrade to these updated packages,
which contain a backported patch to correct this issue. All running
instances of ImageMagick must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-25" />
        <updated date="2010-08-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-1882.html">CVE-2009-1882</cve>
                <bugzilla href="http://bugzilla.redhat.com/503017" id="503017">CVE-2009-1882 ImageMagick, GraphicsMagick: Integer overflow in the routine creating X11 images</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100653010" comment="ImageMagick-c++-devel is earlier than 0:6.0.7.1-20.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100653011" comment="ImageMagick-c++-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100653004" comment="ImageMagick-devel is earlier than 0:6.0.7.1-20.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100653005" comment="ImageMagick-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100653006" comment="ImageMagick-perl is earlier than 0:6.0.7.1-20.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100653007" comment="ImageMagick-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100653002" comment="ImageMagick is earlier than 0:6.0.7.1-20.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100653003" comment="ImageMagick is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100653008" comment="ImageMagick-c++ is earlier than 0:6.0.7.1-20.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100653009" comment="ImageMagick-c++ is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100657" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0657: gdm security and bug fix update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0657-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0657.html" />
          <reference source="CVE" ref_id="CVE-2007-5079" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-5079.html" />
    
    <description>The GNOME Display Manager (GDM) is a configurable re-implementation of XDM,
the X Display Manager. GDM allows you to log in to your system with the X
Window System running, and supports running several different X sessions on
your local machine at the same time.

A flaw was found in the way the gdm package was built. The gdm package was
missing TCP wrappers support on 64-bit platforms, which could result in an
administrator believing they had access restrictions enabled when they did
not. (CVE-2007-5079)

This update also fixes the following bug:

* sometimes the system would hang instead of properly shutting down when
a user chose "Shut down" from the login screen. (BZ#625818)

All users should upgrade to this updated package, which contains backported
patches to correct these issues. GDM must be restarted for this update to
take effect. Rebooting achieves this, but changing the runlevel from 5 to 3
and back to 5 also restarts GDM.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-26" />
        <updated date="2010-08-26" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-5079.html">CVE-2007-5079</cve>
                <bugzilla href="http://bugzilla.redhat.com/181302" id="181302">CVE-2007-5079 gdm with xdmcp ignoring tcp_wrappers on x86_64</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625818" id="625818">gdm/ cannot shutdown system</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100657002" comment="gdm is earlier than 1:2.6.0.5-7.rhel4.19.el4_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100657003" comment="gdm is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100659" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0659: httpd security and bug fix update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0659-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0659.html" />
          <reference source="CVE" ref_id="CVE-2010-1452" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1452.html" />
          <reference source="CVE" ref_id="CVE-2010-2791" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2791.html" />
    
    <description>The Apache HTTP Server is a popular web server.

A flaw was discovered in the way the mod_proxy module of the Apache HTTP
Server handled the timeouts of requests forwarded by a reverse proxy to the
back-end server. If the proxy was configured to reuse existing back-end
connections, it could return a response intended for another user under
certain timeout conditions, possibly leading to information disclosure.
(CVE-2010-2791)

A flaw was found in the way the mod_dav module of the Apache HTTP Server
handled certain requests. If a remote attacker were to send a carefully
crafted request to the server, it could cause the httpd child process to
crash. (CVE-2010-1452)

This update also fixes the following bugs:

* numerous issues in the INFLATE filter provided by mod_deflate. "Inflate
error -5 on flush" errors may have been logged. This update upgrades
mod_deflate to the newer upstream version from Apache HTTP Server 2.2.15.
(BZ#625435)

* the response would be corrupted if mod_filter applied the DEFLATE filter
to a resource requiring a subrequest with an internal redirect. (BZ#625451)

* the OID() function used in the mod_ssl "SSLRequire" directive did not
correctly evaluate extensions of an unknown type. (BZ#625452)

All httpd users should upgrade to these updated packages, which contain
backported patches to correct these issues. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-30" />
        <updated date="2010-08-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1452.html">CVE-2010-1452</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2791.html">CVE-2010-2791</cve>
                <bugzilla href="http://bugzilla.redhat.com/617523" id="617523">CVE-2010-2791 httpd: Reverse proxy sends wrong responses after time-outs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/618189" id="618189">CVE-2010-1452 httpd mod_cache, mod_dav: DoS (httpd child process crash) by parsing URI structure with missing path segments</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625435" id="625435">mod_deflate/mod_proxy generating 'Inflate error -5 on flush' errors</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625451" id="625451">[APACHE BUG]  filter handling issues with subrequests and internal redirects</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625452" id="625452">mod_ssl: Further fix for SSLRequire OID() function</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100659004" comment="httpd-manual is earlier than 0:2.2.3-43.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100168007" comment="httpd-manual is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100659006" comment="httpd-devel is earlier than 0:2.2.3-43.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100168005" comment="httpd-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100659008" comment="mod_ssl is earlier than 0:2.2.3-43.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100168009" comment="mod_ssl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100659002" comment="httpd is earlier than 0:2.2.3-43.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100168003" comment="httpd is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100661" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0661: kernel security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0661-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0661.html" />
          <reference source="CVE" ref_id="CVE-2010-2240" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2240.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issue:

* when an application has a stack overflow, the stack could silently
overwrite another memory mapped area instead of a segmentation fault
occurring, which could cause an application to execute arbitrary code,
possibly leading to privilege escalation. It is known that the X Window
System server can be used to trigger this flaw. (CVE-2010-2240, Important)

Red Hat would like to thank the X.Org security team for reporting this
issue. Upstream acknowledges Rafal Wojtczuk as the original reporter.

Users should upgrade to these updated packages, which contain backported
patches to correct this issue. The system must be rebooted for this update
to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-08-30" />
        <updated date="2010-08-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2240.html">CVE-2010-2240</cve>
                <bugzilla href="http://bugzilla.redhat.com/606611" id="606611">CVE-2010-2240 kernel: mm: keep a guard page below a grow-down stack segment</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661004" comment="kernel-headers is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661002" comment="kernel is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661024" comment="kernel-doc is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661020" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661006" comment="kernel-devel is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661014" comment="kernel-debug is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661018" comment="kernel-kdump is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661010" comment="kernel-xen-devel is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661012" comment="kernel-debug-devel is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661022" comment="kernel-PAE is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661016" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100661008" comment="kernel-xen is earlier than 0:2.6.18-194.11.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100675" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0675: sudo security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0675-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0675.html" />
          <reference source="CVE" ref_id="CVE-2010-2956" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2956.html" />
    
    <description>The sudo (superuser do) utility allows system administrators to give
certain users the ability to run commands as root.

A flaw was found in the way sudo handled Runas specifications containing
both a user and a group list. If a local user were authorized by the
sudoers file to perform their sudo commands with the privileges of a
specified user and group, they could use this flaw to run those commands
with the privileges of either an arbitrary user or group on the system.
(CVE-2010-2956)

Red Hat would like to thank Markus Wuethrich of Swiss Post - PostFinance
for reporting this issue.

Users of sudo should upgrade to this updated package, which contains a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-07" />
        <updated date="2010-09-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2956.html">CVE-2010-2956</cve>
                <bugzilla href="http://bugzilla.redhat.com/628628" id="628628">CVE-2010-2956 sudo: incorrect handling of RunAs specification with both user and group lists</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100675002" comment="sudo is earlier than 0:1.7.2p1-8.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100122003" comment="sudo is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100676" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0676: kernel security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0676-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0676.html" />
          <reference source="CVE" ref_id="CVE-2010-2240" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2240.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issue:

* When an application has a stack overflow, the stack could silently
overwrite another memory mapped area instead of a segmentation fault
occurring, which could cause an application to execute arbitrary code,
possibly leading to privilege escalation. It is known that the X Window
System server can be used to trigger this flaw. (CVE-2010-2240, Important)

Red Hat would like to thank the X.Org security team for reporting this
issue. Upstream acknowledges Rafal Wojtczuk as the original reporter.

Users should upgrade to these updated packages, which contain backported
patches to correct this issue. The system must be rebooted for this update
to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-07" />
        <updated date="2010-09-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2240.html">CVE-2010-2240</cve>
                <bugzilla href="http://bugzilla.redhat.com/606611" id="606611">CVE-2010-2240 kernel: mm: keep a guard page below a grow-down stack segment</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676002" comment="kernel is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676022" comment="kernel-doc is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676004" comment="kernel-devel is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676008" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676018" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676014" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676012" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676016" comment="kernel-xenU is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676006" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676020" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100676010" comment="kernel-smp is earlier than 0:2.6.9-89.0.29.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100678" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0678: rpm security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0678-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0678.html" />
          <reference source="CVE" ref_id="CVE-2005-4889" ref_url="https://www.redhat.com/security/data/cve/CVE-2005-4889.html" />
          <reference source="CVE" ref_id="CVE-2010-2059" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2059.html" />
    
    <description>The RPM Package Manager (RPM) is a command line driven package management
system capable of installing, uninstalling, verifying, querying, and
updating software packages.

It was discovered that RPM did not remove setuid and setgid bits set on
binaries when upgrading or removing packages. A local attacker able to
create hard links to binaries could use this flaw to keep those binaries on
the system, at a specific version level and with the setuid or setgid bit
set, even if the package providing them was upgraded or removed by a system
administrator. This could have security implications if a package was
upgraded or removed because of a security flaw in a setuid or setgid
program. (CVE-2005-4889, CVE-2010-2059)

All users of rpm are advised to upgrade to these updated packages, which
contain a backported patch to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-07" />
        <updated date="2010-09-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2005-4889.html">CVE-2005-4889</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2059.html">CVE-2010-2059</cve>
                <bugzilla href="http://bugzilla.redhat.com/598775" id="598775">CVE-2010-2059 rpm: fails to drop SUID/SGID bits on package upgrade</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625756" id="625756">CVE-2005-4889 rpm: fails to drop SUID/SGID bits on package removal</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100678004" comment="rpm-devel is earlier than 0:4.3.3-33_nonptl.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100678005" comment="rpm-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100678010" comment="rpm-python is earlier than 0:4.3.3-33_nonptl.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100678011" comment="rpm-python is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100678002" comment="rpm is earlier than 0:4.3.3-33_nonptl.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100678003" comment="rpm is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100678012" comment="rpm-libs is earlier than 0:4.3.3-33_nonptl.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100678013" comment="rpm-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100678006" comment="popt is earlier than 0:1.9.1-33_nonptl.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100678007" comment="popt is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100678008" comment="rpm-build is earlier than 0:4.3.3-33_nonptl.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100678009" comment="rpm-build is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100679" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0679: rpm security and bug fix update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0679-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0679.html" />
          <reference source="CVE" ref_id="CVE-2010-2059" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2059.html" />
    
    <description>The RPM Package Manager (RPM) is a command line driven package management
system capable of installing, uninstalling, verifying, querying, and
updating software packages.

It was discovered that RPM did not remove setuid and setgid bits set on
binaries when upgrading packages. A local attacker able to create hard
links to binaries could use this flaw to keep those binaries on the system,
at a specific version level and with the setuid or setgid bit set, even if
the package providing them was upgraded by a system administrator. This
could have security implications if a package was upgraded because of a
security flaw in a setuid or setgid program. (CVE-2010-2059)

This update also fixes the following bug:

* A memory leak in the communication between RPM and the Security-Enhanced
Linux (SELinux) subsystem, which could have caused extensive memory
consumption. In reported cases, this issue was triggered by running
rhn_check when errata were scheduled to be applied. (BZ#627630)

All users of rpm are advised to upgrade to these updated packages, which
contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-07" />
        <updated date="2010-09-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2059.html">CVE-2010-2059</cve>
                <bugzilla href="http://bugzilla.redhat.com/598775" id="598775">CVE-2010-2059 rpm: fails to drop SUID/SGID bits on package upgrade</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/627630" id="627630">rpm: selinux context initialization memory leak</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100679008" comment="rpm-devel is earlier than 0:4.4.2.3-20.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100679009" comment="rpm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100679014" comment="rpm-python is earlier than 0:4.4.2.3-20.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100679015" comment="rpm-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100679002" comment="rpm is earlier than 0:4.4.2.3-20.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100679003" comment="rpm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100679012" comment="rpm-libs is earlier than 0:4.4.2.3-20.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100679013" comment="rpm-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100679004" comment="rpm-apidocs is earlier than 0:4.4.2.3-20.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100679005" comment="rpm-apidocs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100679010" comment="popt is earlier than 0:1.10.2.3-20.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100679011" comment="popt is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100679006" comment="rpm-build is earlier than 0:4.4.2.3-20.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100679007" comment="rpm-build is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100680" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0680: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0680-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0680.html" />
          <reference source="CVE" ref_id="CVE-2010-2760" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2760.html" />
          <reference source="CVE" ref_id="CVE-2010-2765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2765.html" />
          <reference source="CVE" ref_id="CVE-2010-2767" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2767.html" />
          <reference source="CVE" ref_id="CVE-2010-2768" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2768.html" />
          <reference source="CVE" ref_id="CVE-2010-3167" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3167.html" />
          <reference source="CVE" ref_id="CVE-2010-3168" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3168.html" />
          <reference source="CVE" ref_id="CVE-2010-3169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3169.html" />
    
    <description>SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause SeaMonkey to crash or,
potentially, execute arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2010-3169)

A buffer overflow flaw was found in SeaMonkey. A web page containing
malicious content could cause SeaMonkey to crash or, potentially, execute
arbitrary code with the privileges of the user running SeaMonkey.
(CVE-2010-2765)

A use-after-free flaw and several dangling pointer flaws were found in
SeaMonkey. A web page containing malicious content could cause SeaMonkey to
crash or, potentially, execute arbitrary code with the privileges of the
user running SeaMonkey. (CVE-2010-2760, CVE-2010-2767, CVE-2010-3167,
CVE-2010-3168)

A cross-site scripting (XSS) flaw was found in SeaMonkey. A web page
containing malicious content could cause SeaMonkey to run JavaScript code
with the permissions of a different website. (CVE-2010-2768)

All SeaMonkey users should upgrade to these updated packages, which correct
these issues. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-07" />
        <updated date="2010-09-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2760.html">CVE-2010-2760</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2765.html">CVE-2010-2765</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2767.html">CVE-2010-2767</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2768.html">CVE-2010-2768</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3167.html">CVE-2010-3167</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3168.html">CVE-2010-3168</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3169.html">CVE-2010-3169</cve>
                <bugzilla href="http://bugzilla.redhat.com/630055" id="630055">CVE-2010-3169 Mozilla Miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630056" id="630056">CVE-2010-2765 Mozilla Frameset integer overflow vulnerability (MFSA 2010-50)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630059" id="630059">CVE-2010-2767 Mozilla Dangling pointer vulnerability using DOM plugin array (MFSA 2010-51)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630062" id="630062">CVE-2010-2760 Mozilla Dangling pointer vulnerability in nsTreeSelection (MFSA 2010-54)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630064" id="630064">CVE-2010-3168 Mozilla XUL tree removal crash and remote code execution (MFSA 2010-55)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630067" id="630067">CVE-2010-3167 Mozilla Dangling pointer vulnerability in nsTreeContentView (MFSA 2010-56)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630074" id="630074">CVE-2010-2768 Mozilla UTF-7 XSS by overriding document charset using &lt;object> type attribute (MFSA 2010-61)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680016" comment="seamonkey-nspr is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113013" comment="seamonkey-nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680018" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680014" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113019" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680020" comment="seamonkey-mail is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680002" comment="seamonkey is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680006" comment="seamonkey-devel is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680012" comment="seamonkey-chat is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680008" comment="seamonkey-nss is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113005" comment="seamonkey-nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680004" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113011" comment="seamonkey-nss-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680010" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.60.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680025" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-63.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680028" comment="seamonkey-mail is earlier than 0:1.0.9-63.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680023" comment="seamonkey is earlier than 0:1.0.9-63.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680027" comment="seamonkey-devel is earlier than 0:1.0.9-63.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680024" comment="seamonkey-chat is earlier than 0:1.0.9-63.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100680026" comment="seamonkey-js-debugger is earlier than 0:1.0.9-63.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100681" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0681: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0681-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0681.html" />
          <reference source="CVE" ref_id="CVE-2010-2760" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2760.html" />
          <reference source="CVE" ref_id="CVE-2010-2762" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2762.html" />
          <reference source="CVE" ref_id="CVE-2010-2764" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2764.html" />
          <reference source="CVE" ref_id="CVE-2010-2765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2765.html" />
          <reference source="CVE" ref_id="CVE-2010-2766" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2766.html" />
          <reference source="CVE" ref_id="CVE-2010-2767" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2767.html" />
          <reference source="CVE" ref_id="CVE-2010-2768" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2768.html" />
          <reference source="CVE" ref_id="CVE-2010-2769" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2769.html" />
          <reference source="CVE" ref_id="CVE-2010-3166" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3166.html" />
          <reference source="CVE" ref_id="CVE-2010-3167" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3167.html" />
          <reference source="CVE" ref_id="CVE-2010-3168" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3168.html" />
          <reference source="CVE" ref_id="CVE-2010-3169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3169.html" />
    
    <description>Mozilla Firefox is an open source web browser. XULRunner provides the XUL
Runtime environment for Mozilla Firefox.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-3169, CVE-2010-2762)

Several use-after-free and dangling pointer flaws were found in Firefox. A
web page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-2760, CVE-2010-2766, CVE-2010-2767, CVE-2010-3167,
CVE-2010-3168)

Multiple buffer overflow flaws were found in Firefox. A web page containing
malicious content could cause Firefox to crash or, potentially, execute
arbitrary code with the privileges of the user running Firefox.
(CVE-2010-2765, CVE-2010-3166)

Multiple cross-site scripting (XSS) flaws were found in Firefox. A web page
containing malicious content could cause Firefox to run JavaScript code
with the permissions of a different website. (CVE-2010-2768, CVE-2010-2769)

A flaw was found in the Firefox XMLHttpRequest object. A remote site could
use this flaw to gather information about servers on an internal private
network. (CVE-2010-2764)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.6.9. You can find a link to the Mozilla advisories
in the References section of this erratum.

Note: After installing this update, Firefox will fail to connect (with
HTTPS) to a server using the SSL DHE (Diffie-Hellman Ephemeral) key
exchange if the server's ephemeral key is too small. Connecting to such
servers is a security risk as an ephemeral key that is too small makes the
SSL connection vulnerable to attack. Refer to the Solution section for
further information.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.6.9, which corrects these issues. After installing the
update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-07" />
        <updated date="2010-09-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2760.html">CVE-2010-2760</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2762.html">CVE-2010-2762</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2764.html">CVE-2010-2764</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2765.html">CVE-2010-2765</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2766.html">CVE-2010-2766</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2767.html">CVE-2010-2767</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2768.html">CVE-2010-2768</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2769.html">CVE-2010-2769</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3166.html">CVE-2010-3166</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3167.html">CVE-2010-3167</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3168.html">CVE-2010-3168</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3169.html">CVE-2010-3169</cve>
                <bugzilla href="http://bugzilla.redhat.com/630055" id="630055">CVE-2010-3169 Mozilla Miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630056" id="630056">CVE-2010-2765 Mozilla Frameset integer overflow vulnerability (MFSA 2010-50)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630059" id="630059">CVE-2010-2767 Mozilla Dangling pointer vulnerability using DOM plugin array (MFSA 2010-51)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630061" id="630061">CVE-2010-3166 Mozilla Heap buffer overflow in nsTextFrameUtils::TransformText (MFSA 2010-53)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630062" id="630062">CVE-2010-2760 Mozilla Dangling pointer vulnerability in nsTreeSelection (MFSA 2010-54)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630064" id="630064">CVE-2010-3168 Mozilla XUL tree removal crash and remote code execution (MFSA 2010-55)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630067" id="630067">CVE-2010-3167 Mozilla Dangling pointer vulnerability in nsTreeContentView (MFSA 2010-56)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630069" id="630069">CVE-2010-2766 Mozilla Crash and remote code execution in normalizeDocument (MFSA 2010-57)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630071" id="630071">CVE-2010-2762 Mozilla SJOW creates scope chains ending in outer object (MFSA 2010-59)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630074" id="630074">CVE-2010-2768 Mozilla UTF-7 XSS by overriding document charset using &lt;object> type attribute (MFSA 2010-61)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630075" id="630075">CVE-2010-2769 Mozilla Copy-and-paste or drag-and-drop into designMode document allows XSS (MFSA 2010-62)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630078" id="630078">CVE-2010-2764 Mozilla Information leak via XMLHttpRequest statusText (MFSA 2010-63)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681002" comment="xulrunner is earlier than 0:1.9.2.9-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681004" comment="xulrunner-devel is earlier than 0:1.9.2.9-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681006" comment="firefox is earlier than 0:3.6.9-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112009" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681010" comment="nspr-devel is earlier than 0:4.8.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165005" comment="nspr-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681008" comment="nspr is earlier than 0:4.8.6-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165003" comment="nspr is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681012" comment="nss is earlier than 0:3.12.7-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165007" comment="nss is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681014" comment="nss-tools is earlier than 0:3.12.7-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165011" comment="nss-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681018" comment="nss-pkcs11-devel is earlier than 0:3.12.7-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165009" comment="nss-pkcs11-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681016" comment="nss-devel is earlier than 0:3.12.7-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165013" comment="nss-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681021" comment="firefox is earlier than 0:3.6.9-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681025" comment="nspr-devel is earlier than 0:4.8.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165018" comment="nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681023" comment="nspr is earlier than 0:4.8.6-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165016" comment="nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681027" comment="nss is earlier than 0:3.12.7-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165020" comment="nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681031" comment="nss-tools is earlier than 0:3.12.7-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165022" comment="nss-tools is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100681029" comment="nss-devel is earlier than 0:3.12.7-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165024" comment="nss-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100682" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0682: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0682-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0682.html" />
          <reference source="CVE" ref_id="CVE-2010-2760" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2760.html" />
          <reference source="CVE" ref_id="CVE-2010-2765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2765.html" />
          <reference source="CVE" ref_id="CVE-2010-2767" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2767.html" />
          <reference source="CVE" ref_id="CVE-2010-2768" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2768.html" />
          <reference source="CVE" ref_id="CVE-2010-3167" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3167.html" />
          <reference source="CVE" ref_id="CVE-2010-3168" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3168.html" />
          <reference source="CVE" ref_id="CVE-2010-3169" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3169.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the processing of malformed HTML mail content.
An HTML mail message containing malicious content could cause Thunderbird
to crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2010-3169)

A buffer overflow flaw was found in Thunderbird. An HTML mail message
containing malicious content could cause Thunderbird to crash or,
potentially, execute arbitrary code with the privileges of the user running
Thunderbird. (CVE-2010-2765)

A use-after-free flaw and several dangling pointer flaws were found in
Thunderbird. An HTML mail message containing malicious content could cause
Thunderbird to crash or, potentially, execute arbitrary code with the
privileges of the user running Thunderbird. (CVE-2010-2760, CVE-2010-2767,
CVE-2010-3167, CVE-2010-3168)

A cross-site scripting (XSS) flaw was found in Thunderbird. Remote HTML
content could cause Thunderbird to execute JavaScript code with the
permissions of different remote HTML content. (CVE-2010-2768)

Note: JavaScript support is disabled by default in Thunderbird. None of the
above issues are exploitable unless JavaScript is enabled.

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-07" />
        <updated date="2010-09-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2760.html">CVE-2010-2760</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2765.html">CVE-2010-2765</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2767.html">CVE-2010-2767</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2768.html">CVE-2010-2768</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3167.html">CVE-2010-3167</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3168.html">CVE-2010-3168</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3169.html">CVE-2010-3169</cve>
                <bugzilla href="http://bugzilla.redhat.com/630055" id="630055">CVE-2010-3169 Mozilla Miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630056" id="630056">CVE-2010-2765 Mozilla Frameset integer overflow vulnerability (MFSA 2010-50)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630059" id="630059">CVE-2010-2767 Mozilla Dangling pointer vulnerability using DOM plugin array (MFSA 2010-51)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630062" id="630062">CVE-2010-2760 Mozilla Dangling pointer vulnerability in nsTreeSelection (MFSA 2010-54)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630064" id="630064">CVE-2010-3168 Mozilla XUL tree removal crash and remote code execution (MFSA 2010-55)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630067" id="630067">CVE-2010-3167 Mozilla Dangling pointer vulnerability in nsTreeContentView (MFSA 2010-56)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630074" id="630074">CVE-2010-2768 Mozilla UTF-7 XSS by overriding document charset using &lt;object> type attribute (MFSA 2010-61)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100682002" comment="thunderbird is earlier than 0:2.0.0.24-8.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100153003" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100682005" comment="thunderbird is earlier than 0:1.5.0.12-30.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100154003" comment="thunderbird is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100697" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0697: samba security and bug fix update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0697-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0697.html" />
          <reference source="CVE" ref_id="CVE-2010-3069" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3069.html" />
    
    <description>Samba is a suite of programs used by machines to share files, printers, and
other information.

A missing array boundary checking flaw was found in the way Samba parsed
the binary representation of Windows security identifiers (SIDs). A
malicious client could send a specially-crafted SMB request to the Samba
server, resulting in arbitrary code execution with the privileges of the
Samba server (smbd). (CVE-2010-3069)

For Red Hat Enterprise Linux 4, this update also fixes the following bug:

* Previously, the restorecon utility was required during the installation
of the samba-common package. As a result, attempting to update samba
without this utility installed may have failed with the following error:

/var/tmp/rpm-tmp.[xxxxx]: line 7: restorecon: command not found

With this update, the utility is only used when it is already present on
the system, and the package is now always updated as expected. (BZ#629602)

Users of Samba are advised to upgrade to these updated packages, which
correct these issues. After installing this update, the smb service will be
restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-14" />
        <updated date="2010-09-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3069.html">CVE-2010-3069</cve>
                <bugzilla href="http://bugzilla.redhat.com/629602" id="629602">restorecon: command not found after upgrade - leaves two samba-common versions</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630869" id="630869">CVE-2010-3069 Samba: Stack-based buffer overflow by processing specially-crafted SID records</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:rhel_eus</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697012" comment="libsmbclient is earlier than 0:3.0.33-3.29.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488009" comment="libsmbclient is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697010" comment="samba-client is earlier than 0:3.0.33-3.29.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488005" comment="samba-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697006" comment="libsmbclient-devel is earlier than 0:3.0.33-3.29.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488011" comment="libsmbclient-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697004" comment="samba-common is earlier than 0:3.0.33-3.29.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488007" comment="samba-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697002" comment="samba is earlier than 0:3.0.33-3.29.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488003" comment="samba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697008" comment="samba-swat is earlier than 0:3.0.33-3.29.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488013" comment="samba-swat is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697019" comment="samba-client is earlier than 0:3.0.9-1.3E.18" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488048" comment="samba-client is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697017" comment="samba-common is earlier than 0:3.0.9-1.3E.18" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488046" comment="samba-common is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697015" comment="samba is earlier than 0:3.0.9-1.3E.18" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488042" comment="samba is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697021" comment="samba-swat is earlier than 0:3.0.9-1.3E.18" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488044" comment="samba-swat is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697026" comment="samba-client is earlier than 0:3.0.33-0.19.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488048" comment="samba-client is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697027" comment="samba-common is earlier than 0:3.0.33-0.19.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488046" comment="samba-common is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697024" comment="samba is earlier than 0:3.0.33-0.19.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488042" comment="samba is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100697025" comment="samba-swat is earlier than 0:3.0.33-0.19.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488044" comment="samba-swat is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100698" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0698: samba3x security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0698-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0698.html" />
          <reference source="CVE" ref_id="CVE-2010-3069" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3069.html" />
    
    <description>Samba is a suite of programs used by machines to share files, printers, and
other information.

A missing array boundary checking flaw was found in the way Samba parsed
the binary representation of Windows security identifiers (SIDs). A
malicious client could send a specially-crafted SMB request to the Samba
server, resulting in arbitrary code execution with the privileges of the
Samba server (smbd). (CVE-2010-3069)

Users of Samba are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. After installing this
update, the smb service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-14" />
        <updated date="2010-09-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3069.html">CVE-2010-3069</cve>
                <bugzilla href="http://bugzilla.redhat.com/630869" id="630869">CVE-2010-3069 Samba: Stack-based buffer overflow by processing specially-crafted SID records</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698012" comment="tdb-tools is earlier than 0:1.1.2-52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488025" comment="tdb-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698010" comment="samba3x-swat is earlier than 0:3.3.8-0.52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488031" comment="samba3x-swat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698014" comment="libtdb is earlier than 0:1.1.2-52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488037" comment="libtdb is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698024" comment="libtalloc-devel is earlier than 0:1.2.0-52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488019" comment="libtalloc-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698022" comment="samba3x-client is earlier than 0:3.3.8-0.52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488029" comment="samba3x-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698020" comment="samba3x-doc is earlier than 0:3.3.8-0.52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488021" comment="samba3x-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698006" comment="samba3x-winbind is earlier than 0:3.3.8-0.52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488039" comment="samba3x-winbind is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698002" comment="samba3x is earlier than 0:3.3.8-0.52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488015" comment="samba3x is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698018" comment="samba3x-winbind-devel is earlier than 0:3.3.8-0.52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488033" comment="samba3x-winbind-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698026" comment="libtdb-devel is earlier than 0:1.1.2-52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488023" comment="libtdb-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698016" comment="samba3x-domainjoin-gui is earlier than 0:3.3.8-0.52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488027" comment="samba3x-domainjoin-gui is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698008" comment="samba3x-common is earlier than 0:3.3.8-0.52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488017" comment="samba3x-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100698004" comment="libtalloc is earlier than 0:1.2.0-52.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100488035" comment="libtalloc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100703" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0703: bzip2 security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0703-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0703.html" />
          <reference source="CVE" ref_id="CVE-2010-0405" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0405.html" />
    
    <description>bzip2 is a freely available, high-quality data compressor. It provides both
standalone compression and decompression utilities, as well as a shared
library for use with other programs.

An integer overflow flaw was discovered in the bzip2 decompression routine.
This issue could, when decompressing malformed archives, cause bzip2, or an
application linked against the libbz2 library, to crash or, potentially,
execute arbitrary code. (CVE-2010-0405)

Users of bzip2 should upgrade to these updated packages, which contain a
backported patch to resolve this issue. All running applications using the
libbz2 library must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-20" />
        <updated date="2010-09-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0405.html">CVE-2010-0405</cve>
                <bugzilla href="http://bugzilla.redhat.com/627882" id="627882">CVE-2010-0405 bzip2: integer overflow flaw in BZ2_decompress</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703004" comment="bzip2-devel is earlier than 0:1.0.3-6.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703005" comment="bzip2-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703006" comment="bzip2-libs is earlier than 0:1.0.3-6.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703007" comment="bzip2-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703002" comment="bzip2 is earlier than 0:1.0.3-6.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703003" comment="bzip2 is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703013" comment="bzip2-devel is earlier than 0:1.0.2-14.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703014" comment="bzip2-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703011" comment="bzip2-libs is earlier than 0:1.0.2-14.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703012" comment="bzip2-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703009" comment="bzip2 is earlier than 0:1.0.2-14.EL3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703010" comment="bzip2 is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703017" comment="bzip2-devel is earlier than 0:1.0.2-16.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703014" comment="bzip2-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703018" comment="bzip2-libs is earlier than 0:1.0.2-16.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703012" comment="bzip2-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100703016" comment="bzip2 is earlier than 0:1.0.2-16.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100703010" comment="bzip2 is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100704" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0704: kernel security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0704-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0704.html" />
          <reference source="CVE" ref_id="CVE-2010-3081" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3081.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issue:

* The compat_alloc_user_space() function in the Linux kernel 32/64-bit
compatibility layer implementation was missing sanity checks. This function
could be abused in other areas of the Linux kernel if its length argument
can be controlled from user-space. On 64-bit systems, a local, unprivileged
user could use this flaw to escalate their privileges. (CVE-2010-3081,
Important)

Red Hat would like to thank Ben Hawkes for reporting this issue.

Red Hat is aware that a public exploit for this issue is available. Refer
to Knowledgebase article DOC-40265 for further details:
https://access.redhat.com/kb/docs/DOC-40265

Users should upgrade to these updated packages, which contain a backported
patch to correct this issue. The system must be rebooted for this update to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-21" />
        <updated date="2010-09-21" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3081.html">CVE-2010-3081</cve>
                <bugzilla href="http://bugzilla.redhat.com/634457" id="634457">CVE-2010-3081 kernel: 64-bit Compatibility Mode Stack Pointer Underflow</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704004" comment="kernel-headers is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704002" comment="kernel is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704024" comment="kernel-doc is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704022" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704006" comment="kernel-devel is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704010" comment="kernel-debug is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704018" comment="kernel-kdump is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704008" comment="kernel-xen-devel is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704014" comment="kernel-debug-devel is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704020" comment="kernel-PAE is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704016" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100704012" comment="kernel-xen is earlier than 0:2.6.18-194.11.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100706" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0706: flash-plugin security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0706-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0706.html" />
          <reference source="CVE" ref_id="CVE-2010-2884" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2884.html" />
    
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes one vulnerability in Adobe Flash Player. This
vulnerability is detailed on the Adobe security page APSB10-22, listed in
the References section. If a victim loaded a page containing
specially-crafted SWF content, it could cause flash-plugin to crash or,
potentially, execute arbitrary code. (CVE-2010-2884)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.1.85.3 for users of Red Hat Enterprise
Linux 5 Supplementary, and version 9.0.283 for users of Red Hat Enterprise
Linux 3 and 4 Extras.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-21" />
        <updated date="2010-09-21" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2884.html">CVE-2010-2884</cve>
                <bugzilla href="http://bugzilla.redhat.com/633917" id="633917">CVE-2010-2884 Adobe Flash: crash or potential arbitrary code execution (APSB10-22)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100706002" comment="flash-plugin is earlier than 0:10.1.85.3-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100102003" comment="flash-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100718" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0718: kernel security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0718-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0718.html" />
          <reference source="CVE" ref_id="CVE-2010-3081" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3081.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issue:

* The compat_alloc_user_space() function in the Linux kernel 32/64-bit
compatibility layer implementation was missing sanity checks. This function
could be abused in other areas of the Linux kernel if its length argument
can be controlled from user-space. On 64-bit systems, a local, unprivileged
user could use this flaw to escalate their privileges. (CVE-2010-3081,
Important)

Red Hat would like to thank Ben Hawkes for reporting this issue.

Refer to Knowledgebase article DOC-40265 for further details:
https://access.redhat.com/kb/docs/DOC-40265

Users should upgrade to these updated packages, which contain a backported
patch to correct this issue. The system must be rebooted for this update to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-28" />
        <updated date="2010-09-28" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3081.html">CVE-2010-3081</cve>
                <bugzilla href="http://bugzilla.redhat.com/634457" id="634457">CVE-2010-3081 kernel: 64-bit Compatibility Mode Stack Pointer Underflow</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718002" comment="kernel is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718022" comment="kernel-doc is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718004" comment="kernel-devel is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718016" comment="kernel-smp-devel is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718020" comment="kernel-hugemem is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718014" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718010" comment="kernel-largesmp is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718012" comment="kernel-xenU is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718006" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718018" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100718008" comment="kernel-smp is earlier than 0:2.6.9-89.29.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100720" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0720: mikmod security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0720-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0720.html" />
          <reference source="CVE" ref_id="CVE-2007-6720" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-6720.html" />
          <reference source="CVE" ref_id="CVE-2009-3995" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3995.html" />
          <reference source="CVE" ref_id="CVE-2009-3996" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3996.html" />
    
    <description>MikMod is a MOD music file player for Linux, UNIX, and similar operating
systems. It supports various file formats including MOD, STM, S3M, MTM, XM,
ULT, and IT.

Multiple input validation flaws, resulting in buffer overflows, were
discovered in MikMod. Specially-crafted music files in various formats
could, when played, cause an application using the MikMod library to crash
or, potentially, execute arbitrary code. (CVE-2009-3995, CVE-2009-3996,
CVE-2007-6720)

All MikMod users should upgrade to these updated packages, which contain
backported patches to correct these issues. All running applications using
the MikMod library must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-28" />
        <updated date="2010-09-28" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-6720.html">CVE-2007-6720</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3995.html">CVE-2009-3995</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3996.html">CVE-2009-3996</cve>
                <bugzilla href="http://bugzilla.redhat.com/479829" id="479829">CVE-2007-6720 mikmod: crash or abort when loading/playing multiple files with different number of channels</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/614643" id="614643">CVE-2009-3995 CVE-2009-3996 libmikmod: arbitrary code execution via crafted Impulse Tracker or Ultratracker files</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100720002" comment="mikmod is earlier than 0:3.1.6-39.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100720003" comment="mikmod is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100720004" comment="mikmod-devel is earlier than 0:3.1.6-39.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100720005" comment="mikmod-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100720007" comment="mikmod is earlier than 0:3.1.6-23.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100720008" comment="mikmod is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100720009" comment="mikmod-devel is earlier than 0:3.1.6-23.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100720010" comment="mikmod-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100720012" comment="mikmod is earlier than 0:3.1.6-33.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100720008" comment="mikmod is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100720013" comment="mikmod-devel is earlier than 0:3.1.6-33.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100720010" comment="mikmod-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100723" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0723: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0723-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0723.html" />
          <reference source="CVE" ref_id="CVE-2010-1083" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1083.html" />
          <reference source="CVE" ref_id="CVE-2010-2492" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2492.html" />
          <reference source="CVE" ref_id="CVE-2010-2798" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2798.html" />
          <reference source="CVE" ref_id="CVE-2010-2938" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2938.html" />
          <reference source="CVE" ref_id="CVE-2010-2942" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2942.html" />
          <reference source="CVE" ref_id="CVE-2010-2943" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2943.html" />
          <reference source="CVE" ref_id="CVE-2010-3015" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3015.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* A buffer overflow flaw was found in the ecryptfs_uid_hash() function in
the Linux kernel eCryptfs implementation. On systems that have the eCryptfs
netlink transport (Red Hat Enterprise Linux 5 does) or where the
"/dev/ecryptfs" file has world writable permissions (which it does not, by
default, on Red Hat Enterprise Linux 5), a local, unprivileged user could
use this flaw to cause a denial of service or possibly escalate their
privileges. (CVE-2010-2492, Important)

* A miscalculation of the size of the free space of the initial directory
entry in a directory leaf block was found in the Linux kernel Global File
System 2 (GFS2) implementation. A local, unprivileged user with write
access to a GFS2-mounted file system could perform a rename operation on
that file system to trigger a NULL pointer dereference, possibly resulting
in a denial of service or privilege escalation. (CVE-2010-2798, Important)

* A flaw was found in the Xen hypervisor implementation when running a
system that has an Intel CPU without Extended Page Tables (EPT) support.
While attempting to dump information about a crashing fully-virtualized
guest, the flaw could cause the hypervisor to crash the host as well. A
user with permissions to configure a fully-virtualized guest system could
use this flaw to crash the host. (CVE-2010-2938, Moderate)

* Information leak flaws were found in the Linux kernel's Traffic Control
Unit implementation. A local attacker could use these flaws to cause the
kernel to leak kernel memory to user-space, possibly leading to the
disclosure of sensitive information. (CVE-2010-2942, Moderate)

* A flaw was found in the Linux kernel's XFS file system implementation.
The file handle lookup could return an invalid inode as valid. If an XFS
file system was mounted via NFS (Network File System), a local attacker
could access stale data or overwrite existing data that reused the inodes.
(CVE-2010-2943, Moderate)

* An integer overflow flaw was found in the extent range checking code in
the Linux kernel's ext4 file system implementation. A local, unprivileged
user with write access to an ext4-mounted file system could trigger this
flaw by writing to a file at a very large file offset, resulting in a local
denial of service. (CVE-2010-3015, Moderate)

* An information leak flaw was found in the Linux kernel's USB
implementation. Certain USB errors could result in an uninitialized kernel
buffer being sent to user-space. An attacker with physical access to a
target system could use this flaw to cause an information leak.
(CVE-2010-1083, Low)

Red Hat would like to thank Andre Osterhues for reporting CVE-2010-2492;
Grant Diffey of CenITex for reporting CVE-2010-2798; Toshiyuki Okajima for
reporting CVE-2010-3015; and Marcus Meissner for reporting CVE-2010-1083.

This update also fixes several bugs. Documentation for these bug fixes will
be available shortly from the Technical Notes document linked to in the
References.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-29" />
        <updated date="2010-09-29" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1083.html">CVE-2010-1083</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2492.html">CVE-2010-2492</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2798.html">CVE-2010-2798</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2938.html">CVE-2010-2938</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2942.html">CVE-2010-2942</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2943.html">CVE-2010-2943</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3015.html">CVE-2010-3015</cve>
                <bugzilla href="http://bugzilla.redhat.com/566624" id="566624">CVE-2010-1083 kernel: information leak via userspace USB interface</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/611385" id="611385">CVE-2010-2492 kernel: ecryptfs_uid_hash() buffer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/620300" id="620300">CVE-2010-2798 kernel: gfs2: rename causes kernel panic</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/620490" id="620490">CVE-2010-2938 kernel: guest crashes on non-EPT machines may crash the host as well</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/620661" id="620661">ips driver sleeps while holding spin_lock [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/621940" id="621940">Significant MSI performance issue due to redundant interrupt masking [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/623141" id="623141">High CPU overhead from mapping/unmapping the zero page [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/623143" id="623143">[5u6] Bonding in ALB mode sends ARP in loop [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624327" id="624327">CVE-2010-3015 kernel: integer overflow in ext4_ext_get_blocks()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624365" id="624365">cpu flags missing from /proc/cpuinfo [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624369" id="624369">need to backport 2e3219b5c8a2e44e0b83ae6e04f52f20a82ac0f2 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624903" id="624903">CVE-2010-2942 kernel: net sched: fix some kernel memory leaks</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624923" id="624923">CVE-2010-2943 kernel: xfs: validate inode numbers in file handles correctly</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/627194" id="627194">dasd: force online does not work. [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/627195" id="627195">dasd: allocate fallback cqr for reserve/release [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/629219" id="629219">[rhel5.6] XFS incorrectly validates inodes [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630978" id="630978">Detect and recover from cxgb3 adapter parity errors [rhel-5.5.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723004" comment="kernel-headers is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723002" comment="kernel is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723024" comment="kernel-doc is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723020" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723010" comment="kernel-devel is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723008" comment="kernel-debug is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723018" comment="kernel-kdump is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723006" comment="kernel-xen-devel is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723014" comment="kernel-debug-devel is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723022" comment="kernel-PAE is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723016" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100723012" comment="kernel-xen is earlier than 0:2.6.18-194.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100734" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0734: Red Hat Enterprise Linux 3 - 1-Month End Of Life Notice (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0734-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0734.html" />
    
    <description>In accordance with the Red Hat Enterprise Linux Errata Support Policy, the
regular 7 year life-cycle of Red Hat Enterprise Linux 3 will end on October
31, 2010.

After this date, Red Hat will discontinue the regular subscription services
for Red Hat Enterprise Linux 3. Therefore, new bug fix, enhancement, and
security errata updates, as well as technical support services will no
longer be available for the following products:

* Red Hat Enterprise Linux AS 3
* Red Hat Enterprise Linux ES 3
* Red Hat Enterprise Linux WS 3
* Red Hat Enterprise Linux Extras 3
* Red Hat Desktop 3
* Red Hat Global File System 3
* Red Hat Cluster Suite 3

Customers still running production workloads on Red Hat Enterprise
Linux 3 are advised to begin planning the upgrade to Red Hat Enterprise
Linux 5. Active subscribers of Red Hat Enterprise Linux already have access
to all currently maintained versions of Red Hat Enterprise Linux, as part
of their subscription without additional fees.

For customers who are unable to migrate off Red Hat Enterprise Linux 3
before its end-of-life date, Red Hat is offering a limited, optional
extension program referred to as RHEL 3 ELS. For more information, contact
your Red Hat sales representative or channel partner on this program.

Once you are eligible for subscribing to the RHEL 3 ELS channels, read the
Red Hat Knowledgebase article DOC-40489 at
https://access.redhat.com/kb/docs/DOC-40489 for detailed information on how
to subscribe to the RHEL 3 ELS channels.

Details of the Red Hat Enterprise Linux life-cycle can be found on the Red
Hat website: http://www.redhat.com/security/updates/errata/</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-09-30" />
        <updated date="2010-09-30" />
                <bugzilla href="http://bugzilla.redhat.com/635632" id="635632">Send Out RHEL 3 1-Month EOL Notice</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100734002" comment="redhat-release is earlier than 0:3AS-13.9.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100734004" comment="redhat-release is earlier than 0:3WS-13.9.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100734005" comment="redhat-release is earlier than 0:3Desktop-13.9.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100734006" comment="redhat-release is earlier than 0:3ES-13.9.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100736" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0736: freetype security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0736-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0736.html" />
          <reference source="CVE" ref_id="CVE-2010-2806" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2806.html" />
          <reference source="CVE" ref_id="CVE-2010-3054" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3054.html" />
          <reference source="CVE" ref_id="CVE-2010-3311" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3311.html" />
    
    <description>FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently. The freetype packages for Red Hat Enterprise Linux 3 provide
both the FreeType 1 and FreeType 2 font engines.

It was discovered that the FreeType font rendering engine improperly
validated certain position values when processing input streams. If a user
loaded a specially-crafted font file with an application linked against
FreeType, and the relevant font glyphs were subsequently rendered with the
X FreeType library (libXft), it could trigger a heap-based buffer overflow
in the libXft library, causing the application to crash or, possibly,
execute arbitrary code with the privileges of the user running the
application. (CVE-2010-3311)

An array index error was found in the way the FreeType font rendering
engine processed certain PostScript Type 42 font files. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2806)

A stack overflow flaw was found in the way the FreeType font rendering
engine processed PostScript Type 1 font files that contain nested Standard
Encoding Accented Character (seac) calls. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash. (CVE-2010-3054)

Note: All of the issues in this erratum only affect the FreeType 2 font
engine.

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues. The X server must be restarted
(log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-04" />
        <updated date="2010-10-04" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2806.html">CVE-2010-2806</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3054.html">CVE-2010-3054</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3311.html">CVE-2010-3311</cve>
                <bugzilla href="http://bugzilla.redhat.com/621980" id="621980">CVE-2010-2806 FreeType: Heap-based buffer overflow by processing FontType42 fonts with negative length of SFNT strings (FT bug #30656)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/623625" id="623625">CVE-2010-3311 freetype: Input stream position error by processing Compact Font Format (CFF) font files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625632" id="625632">CVE-2010-3054 freetype: DoS via nested "seac" calls</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100736008" comment="freetype-utils is earlier than 0:2.1.4-18.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577009" comment="freetype-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100736002" comment="freetype is earlier than 0:2.1.4-18.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577003" comment="freetype is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100736006" comment="freetype-demos is earlier than 0:2.1.4-18.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577007" comment="freetype-demos is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100736004" comment="freetype-devel is earlier than 0:2.1.4-18.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577005" comment="freetype-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100737" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0737: freetype security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0737-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0737.html" />
          <reference source="CVE" ref_id="CVE-2010-2806" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2806.html" />
          <reference source="CVE" ref_id="CVE-2010-2808" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2808.html" />
          <reference source="CVE" ref_id="CVE-2010-3054" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3054.html" />
          <reference source="CVE" ref_id="CVE-2010-3311" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3311.html" />
    
    <description>FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently. The freetype packages for Red Hat Enterprise Linux 4 provide
both the FreeType 1 and FreeType 2 font engines. The freetype packages for
Red Hat Enterprise Linux 5 provide only the FreeType 2 font engine.

It was discovered that the FreeType font rendering engine improperly
validated certain position values when processing input streams. If a user
loaded a specially-crafted font file with an application linked against
FreeType, and the relevant font glyphs were subsequently rendered with the
X FreeType library (libXft), it could trigger a heap-based buffer overflow
in the libXft library, causing the application to crash or, possibly,
execute arbitrary code with the privileges of the user running the
application. (CVE-2010-3311)

A stack-based buffer overflow flaw was found in the way the FreeType font
rendering engine processed some PostScript Type 1 fonts. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2808)

An array index error was found in the way the FreeType font rendering
engine processed certain PostScript Type 42 font files. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2806)

A stack overflow flaw was found in the way the FreeType font rendering
engine processed PostScript Type 1 font files that contain nested Standard
Encoding Accented Character (seac) calls. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash. (CVE-2010-3054)

Note: All of the issues in this erratum only affect the FreeType 2 font
engine.

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues. The X server must be restarted
(log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-04" />
        <updated date="2010-10-04" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2806.html">CVE-2010-2806</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2808.html">CVE-2010-2808</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3054.html">CVE-2010-3054</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3311.html">CVE-2010-3311</cve>
                <bugzilla href="http://bugzilla.redhat.com/621907" id="621907">CVE-2010-2808 FreeType: Stack-based buffer overflow by processing certain LWFN fonts</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/621980" id="621980">CVE-2010-2806 FreeType: Heap-based buffer overflow by processing FontType42 fonts with negative length of SFNT strings (FT bug #30656)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/623625" id="623625">CVE-2010-3311 freetype: Input stream position error by processing Compact Font Format (CFF) font files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625632" id="625632">CVE-2010-3054 freetype: DoS via nested "seac" calls</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100737002" comment="freetype is earlier than 0:2.2.1-28.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578003" comment="freetype is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100737004" comment="freetype-demos is earlier than 0:2.2.1-28.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578007" comment="freetype-demos is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100737006" comment="freetype-devel is earlier than 0:2.2.1-28.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578005" comment="freetype-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100737011" comment="freetype-utils is earlier than 0:2.1.9-17.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577009" comment="freetype-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100737009" comment="freetype is earlier than 0:2.1.9-17.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577003" comment="freetype is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100737015" comment="freetype-demos is earlier than 0:2.1.9-17.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577007" comment="freetype-demos is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100737013" comment="freetype-devel is earlier than 0:2.1.9-17.el4.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577005" comment="freetype-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100742" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0742: postgresql and postgresql84 security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0742-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0742.html" />
          <reference source="CVE" ref_id="CVE-2010-3433" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3433.html" />
    
    <description>PostgreSQL is an advanced object-relational database management system
(DBMS). PL/Perl and PL/Tcl allow users to write PostgreSQL functions in the
Perl and Tcl languages. The PostgreSQL SECURITY DEFINER parameter, which
can be used when creating a new PostgreSQL function, specifies that the
function will be executed with the privileges of the user that created it.

It was discovered that a user could utilize the features of the PL/Perl and
PL/Tcl languages to modify the behavior of a SECURITY DEFINER function
created by a different user. If the PL/Perl or PL/Tcl language was used to
implement a SECURITY DEFINER function, an authenticated database user could
use a PL/Perl or PL/Tcl script to modify the behavior of that function
during subsequent calls in the same session. This would result in the
modified or injected code also being executed with the privileges of the
user who created the SECURITY DEFINER function, possibly leading to
privilege escalation. (CVE-2010-3433)

For Red Hat Enterprise Linux 4, the updated postgresql packages upgrade
PostgreSQL to version 7.4.30. Refer to the PostgreSQL Release Notes for a
list of changes:

http://www.postgresql.org/docs/7.4/static/release.html

For Red Hat Enterprise Linux 5, the updated postgresql packages upgrade
PostgreSQL to version 8.1.22, and the updated postgresql84 packages upgrade
PostgreSQL to version 8.4.5. Refer to the PostgreSQL Release Notes for a
list of changes:

http://www.postgresql.org/docs/8.1/static/release.html
http://www.postgresql.org/docs/8.4/static/release.html

All PostgreSQL users are advised to upgrade to these updated packages,
which correct this issue. If the postgresql service is running, it will be
automatically restarted after installing this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-06" />
        <updated date="2010-10-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3433.html">CVE-2010-3433</cve>
                <bugzilla href="http://bugzilla.redhat.com/639371" id="639371">CVE-2010-3433 PostgreSQL (PL/Perl, PL/Tcl): SECURITY DEFINER function keyword bypass</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742018" comment="postgresql84-tcl is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430009" comment="postgresql84-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742024" comment="postgresql84-docs is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430011" comment="postgresql84-docs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742020" comment="postgresql84-python is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430025" comment="postgresql84-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742012" comment="postgresql84-plpython is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430019" comment="postgresql84-plpython is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742014" comment="postgresql84-server is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430007" comment="postgresql84-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742010" comment="postgresql84-test is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430021" comment="postgresql84-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742004" comment="postgresql84-libs is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430013" comment="postgresql84-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742022" comment="postgresql84-pltcl is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430015" comment="postgresql84-pltcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742016" comment="postgresql84-plperl is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430005" comment="postgresql84-plperl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742008" comment="postgresql84-devel is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430017" comment="postgresql84-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742002" comment="postgresql84 is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430003" comment="postgresql84 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742006" comment="postgresql84-contrib is earlier than 0:8.4.5-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100430023" comment="postgresql84-contrib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742042" comment="postgresql-docs is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429017" comment="postgresql-docs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742032" comment="postgresql-devel is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429005" comment="postgresql-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742030" comment="postgresql-test is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429021" comment="postgresql-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742028" comment="postgresql-contrib is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429009" comment="postgresql-contrib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742044" comment="postgresql-libs is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429007" comment="postgresql-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742038" comment="postgresql-tcl is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429011" comment="postgresql-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742026" comment="postgresql is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429003" comment="postgresql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742040" comment="postgresql-python is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429013" comment="postgresql-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742036" comment="postgresql-server is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429019" comment="postgresql-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742034" comment="postgresql-pl is earlier than 0:8.1.22-1.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100429015" comment="postgresql-pl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742055" comment="postgresql-jdbc is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428005" comment="postgresql-jdbc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742051" comment="postgresql-docs is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428019" comment="postgresql-docs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742065" comment="postgresql-devel is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428007" comment="postgresql-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742063" comment="postgresql-contrib is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428023" comment="postgresql-contrib is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742061" comment="postgresql-test is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428011" comment="postgresql-test is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742049" comment="postgresql-libs is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428021" comment="postgresql-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742059" comment="postgresql-tcl is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428013" comment="postgresql-tcl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742047" comment="postgresql is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428003" comment="postgresql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742067" comment="postgresql-server is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428017" comment="postgresql-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742057" comment="postgresql-python is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428015" comment="postgresql-python is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100742053" comment="postgresql-pl is earlier than 0:7.4.30-1.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100428009" comment="postgresql-pl is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100743" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0743: acroread security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0743-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0743.html" />
          <reference source="CVE" ref_id="CVE-2010-2883" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2883.html" />
          <reference source="CVE" ref_id="CVE-2010-2884" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2884.html" />
          <reference source="CVE" ref_id="CVE-2010-2887" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2887.html" />
          <reference source="CVE" ref_id="CVE-2010-2889" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2889.html" />
          <reference source="CVE" ref_id="CVE-2010-2890" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2890.html" />
          <reference source="CVE" ref_id="CVE-2010-3619" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3619.html" />
          <reference source="CVE" ref_id="CVE-2010-3620" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3620.html" />
          <reference source="CVE" ref_id="CVE-2010-3621" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3621.html" />
          <reference source="CVE" ref_id="CVE-2010-3622" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3622.html" />
          <reference source="CVE" ref_id="CVE-2010-3625" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3625.html" />
          <reference source="CVE" ref_id="CVE-2010-3626" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3626.html" />
          <reference source="CVE" ref_id="CVE-2010-3627" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3627.html" />
          <reference source="CVE" ref_id="CVE-2010-3628" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3628.html" />
          <reference source="CVE" ref_id="CVE-2010-3629" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3629.html" />
          <reference source="CVE" ref_id="CVE-2010-3630" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3630.html" />
          <reference source="CVE" ref_id="CVE-2010-3632" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3632.html" />
          <reference source="CVE" ref_id="CVE-2010-3656" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3656.html" />
          <reference source="CVE" ref_id="CVE-2010-3657" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3657.html" />
          <reference source="CVE" ref_id="CVE-2010-3658" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3658.html" />
    
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes multiple vulnerabilities in Adobe Reader. These
vulnerabilities are detailed on the Adobe security page APSB10-21, listed
in the References section.

A specially-crafted PDF file could cause Adobe Reader to crash or,
potentially, execute arbitrary code as the user running Adobe Reader when
opened. (CVE-2010-2883, CVE-2010-2884, CVE-2010-2889, CVE-2010-2890,
CVE-2010-3619, CVE-2010-3620, CVE-2010-3621, CVE-2010-3622, CVE-2010-3625,
CVE-2010-3626, CVE-2010-3627, CVE-2010-3628, CVE-2010-3629, CVE-2010-3630,
CVE-2010-3632, CVE-2010-3658)

An insecure relative RPATH (runtime library search path) set in some Adobe
Reader libraries could allow a local attacker, who is able to convince
another user to run Adobe Reader in an attacker-controlled directory, to
execute arbitrary code with the privileges of the victim. (CVE-2010-2887)

A specially-crafted PDF file could cause Adobe Reader to crash when opened.
(CVE-2010-3656, CVE-2010-3657)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 9.4, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-06" />
        <updated date="2010-10-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2883.html">CVE-2010-2883</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2884.html">CVE-2010-2884</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2887.html">CVE-2010-2887</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2889.html">CVE-2010-2889</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2890.html">CVE-2010-2890</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3619.html">CVE-2010-3619</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3620.html">CVE-2010-3620</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3621.html">CVE-2010-3621</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3622.html">CVE-2010-3622</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3625.html">CVE-2010-3625</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3626.html">CVE-2010-3626</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3627.html">CVE-2010-3627</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3628.html">CVE-2010-3628</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3629.html">CVE-2010-3629</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3630.html">CVE-2010-3630</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3632.html">CVE-2010-3632</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3656.html">CVE-2010-3656</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3657.html">CVE-2010-3657</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3658.html">CVE-2010-3658</cve>
                <bugzilla href="http://bugzilla.redhat.com/632267" id="632267">CVE-2010-2883 Acroread: Stack-based buffer overflow by processing certain fonts (APSA10-02)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/633917" id="633917">CVE-2010-2884 Adobe Flash: crash or potential arbitrary code execution (APSB10-22)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639890" id="639890">acroread: multiple code execution flaws (APSB10-21)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639903" id="639903">acroread: denial of service flaws (APSB10-21)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639913" id="639913">CVE-2010-2887 acroread: use of insecure RPATH (APSB10-21)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100743004" comment="acroread-plugin is earlier than 0:9.4.0-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100743002" comment="acroread is earlier than 0:9.4.0-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100749" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0749: poppler security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0749-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0749.html" />
          <reference source="CVE" ref_id="CVE-2010-3702" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3702.html" />
          <reference source="CVE" ref_id="CVE-2010-3704" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3704.html" />
    
    <description>Poppler is a Portable Document Format (PDF) rendering library, used by
applications such as Evince.

An uninitialized pointer use flaw was discovered in poppler. An attacker
could create a malicious PDF file that, when opened, would cause
applications that use poppler (such as Evince) to crash or, potentially,
execute arbitrary code. (CVE-2010-3702)

An array index error was found in the way poppler parsed PostScript Type 1
fonts embedded in PDF documents. An attacker could create a malicious PDF
file that, when opened, would cause applications that use poppler (such as
Evince) to crash or, potentially, execute arbitrary code. (CVE-2010-3704)

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-07" />
        <updated date="2010-10-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3702.html">CVE-2010-3702</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3704.html">CVE-2010-3704</cve>
                <bugzilla href="http://bugzilla.redhat.com/595245" id="595245">CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638960" id="638960">CVE-2010-3704 xpdf: array indexing error in FoFiType1::parse()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100749004" comment="poppler-utils is earlier than 0:0.5.4-4.4.el5_5.14" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100749005" comment="poppler-utils is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100749002" comment="poppler is earlier than 0:0.5.4-4.4.el5_5.14" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100749003" comment="poppler is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100749006" comment="poppler-devel is earlier than 0:0.5.4-4.4.el5_5.14" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100749007" comment="poppler-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100750" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0750: xpdf security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0750-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0750.html" />
          <reference source="CVE" ref_id="CVE-2010-3702" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3702.html" />
    
    <description>Xpdf is an X Window System based viewer for Portable Document Format (PDF)
files.

An uninitialized pointer use flaw was discovered in Xpdf. An attacker could
create a malicious PDF file that, when opened, would cause Xpdf to crash
or, potentially, execute arbitrary code. (CVE-2010-3702)

Users are advised to upgrade to this updated package, which contains a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-07" />
        <updated date="2010-10-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3702.html">CVE-2010-3702</cve>
                <bugzilla href="http://bugzilla.redhat.com/595245" id="595245">CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100750002" comment="xpdf is earlier than 1:2.02-19.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100750003" comment="xpdf is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100751" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0751: xpdf security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0751-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0751.html" />
          <reference source="CVE" ref_id="CVE-2010-3702" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3702.html" />
          <reference source="CVE" ref_id="CVE-2010-3704" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3704.html" />
    
    <description>Xpdf is an X Window System based viewer for Portable Document Format (PDF)
files.

An uninitialized pointer use flaw was discovered in Xpdf. An attacker could
create a malicious PDF file that, when opened, would cause Xpdf to crash
or, potentially, execute arbitrary code. (CVE-2010-3702)

An array index error was found in the way Xpdf parsed PostScript Type 1
fonts embedded in PDF documents. An attacker could create a malicious PDF
file that, when opened, would cause Xpdf to crash or, potentially, execute
arbitrary code. (CVE-2010-3704)

Users are advised to upgrade to this updated package, which contains
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-07" />
        <updated date="2010-10-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3702.html">CVE-2010-3702</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3704.html">CVE-2010-3704</cve>
                <bugzilla href="http://bugzilla.redhat.com/595245" id="595245">CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638960" id="638960">CVE-2010-3704 xpdf: array indexing error in FoFiType1::parse()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100751002" comment="xpdf is earlier than 1:3.00-24.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100750003" comment="xpdf is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100752" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0752: gpdf security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0752-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0752.html" />
          <reference source="CVE" ref_id="CVE-2010-3702" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3702.html" />
          <reference source="CVE" ref_id="CVE-2010-3704" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3704.html" />
    
    <description>GPdf is a viewer for Portable Document Format (PDF) files.

An uninitialized pointer use flaw was discovered in GPdf. An attacker could
create a malicious PDF file that, when opened, would cause GPdf to crash
or, potentially, execute arbitrary code. (CVE-2010-3702)

An array index error was found in the way GPdf parsed PostScript Type 1
fonts embedded in PDF documents. An attacker could create a malicious PDF
file that, when opened, would cause GPdf to crash or, potentially, execute
arbitrary code. (CVE-2010-3704)

Users are advised to upgrade to this updated package, which contains
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-07" />
        <updated date="2010-10-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3702.html">CVE-2010-3702</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3704.html">CVE-2010-3704</cve>
                <bugzilla href="http://bugzilla.redhat.com/595245" id="595245">CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638960" id="638960">CVE-2010-3704 xpdf: array indexing error in FoFiType1::parse()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100752002" comment="gpdf is earlier than 0:2.8.2-7.7.2.el4_8.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100752003" comment="gpdf is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100753" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0753: kdegraphics security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0753-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0753.html" />
          <reference source="CVE" ref_id="CVE-2010-3702" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3702.html" />
          <reference source="CVE" ref_id="CVE-2010-3704" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3704.html" />
    
    <description>The kdegraphics packages contain applications for the K Desktop
Environment, including KPDF, a viewer for Portable Document Format (PDF)
files.

An uninitialized pointer use flaw was discovered in KPDF. An attacker could
create a malicious PDF file that, when opened, would cause KPDF to crash
or, potentially, execute arbitrary code. (CVE-2010-3702)

An array index error was found in the way KPDF parsed PostScript Type 1
fonts embedded in PDF documents. An attacker could create a malicious PDF
file that, when opened, would cause KPDF to crash or, potentially, execute
arbitrary code. (CVE-2010-3704)

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-07" />
        <updated date="2010-10-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3702.html">CVE-2010-3702</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3704.html">CVE-2010-3704</cve>
                <bugzilla href="http://bugzilla.redhat.com/595245" id="595245">CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638960" id="638960">CVE-2010-3704 xpdf: array indexing error in FoFiType1::parse()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100753002" comment="kdegraphics is earlier than 7:3.5.4-17.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100753003" comment="kdegraphics is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100753004" comment="kdegraphics-devel is earlier than 7:3.5.4-17.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100753005" comment="kdegraphics-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100753007" comment="kdegraphics is earlier than 7:3.3.1-18.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100753008" comment="kdegraphics is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100753009" comment="kdegraphics-devel is earlier than 7:3.3.1-18.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100753010" comment="kdegraphics-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100754" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0754: cups security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0754-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0754.html" />
          <reference source="CVE" ref_id="CVE-2010-3702" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3702.html" />
    
    <description>The Common UNIX Printing System (CUPS) provides a portable printing layer
for UNIX operating systems. The CUPS "pdftops" filter converts Portable
Document Format (PDF) files to PostScript.

An uninitialized pointer use flaw was discovered in the CUPS "pdftops"
filter. An attacker could create a malicious PDF file that, when printed,
would cause "pdftops" to crash or, potentially, execute arbitrary code as
the "lp" user. (CVE-2010-3702)

Users of cups are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. After installing this
update, the cupsd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-07" />
        <updated date="2010-10-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3702.html">CVE-2010-3702</cve>
                <bugzilla href="http://bugzilla.redhat.com/595245" id="595245">CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100754006" comment="cups-devel is earlier than 1:1.1.17-13.3.70" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490016" comment="cups-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100754004" comment="cups-libs is earlier than 1:1.1.17-13.3.70" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490014" comment="cups-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100754002" comment="cups is earlier than 1:1.1.17-13.3.70" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490012" comment="cups is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100755" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0755: cups security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0755-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0755.html" />
          <reference source="CVE" ref_id="CVE-2009-3609" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3609.html" />
          <reference source="CVE" ref_id="CVE-2010-3702" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3702.html" />
    
    <description>The Common UNIX Printing System (CUPS) provides a portable printing layer
for UNIX operating systems. The CUPS "pdftops" filter converts Portable
Document Format (PDF) files to PostScript.

Multiple flaws were discovered in the CUPS "pdftops" filter. An attacker
could create a malicious PDF file that, when printed, would cause "pdftops"
to crash or, potentially, execute arbitrary code as the "lp" user.
(CVE-2010-3702, CVE-2009-3609)

Users of cups are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. After installing this
update, the cupsd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-07" />
        <updated date="2010-10-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3609.html">CVE-2009-3609</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3702.html">CVE-2010-3702</cve>
                <bugzilla href="http://bugzilla.redhat.com/526893" id="526893">CVE-2009-3609 xpdf/poppler: ImageStream::ImageStream integer overflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/595245" id="595245">CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100755006" comment="cups-devel is earlier than 1:1.1.22-0.rc1.9.32.el4_8.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490016" comment="cups-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100755004" comment="cups-libs is earlier than 1:1.1.22-0.rc1.9.32.el4_8.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490014" comment="cups-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100755002" comment="cups is earlier than 1:1.1.22-0.rc1.9.32.el4_8.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100490012" comment="cups is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100768" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0768: java-1.6.0-openjdk security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0768-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0768.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-3541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3541.html" />
          <reference source="CVE" ref_id="CVE-2010-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3548.html" />
          <reference source="CVE" ref_id="CVE-2010-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3549.html" />
          <reference source="CVE" ref_id="CVE-2010-3551" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3551.html" />
          <reference source="CVE" ref_id="CVE-2010-3553" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3553.html" />
          <reference source="CVE" ref_id="CVE-2010-3554" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3554.html" />
          <reference source="CVE" ref_id="CVE-2010-3557" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3557.html" />
          <reference source="CVE" ref_id="CVE-2010-3561" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3561.html" />
          <reference source="CVE" ref_id="CVE-2010-3562" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3562.html" />
          <reference source="CVE" ref_id="CVE-2010-3564" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3564.html" />
          <reference source="CVE" ref_id="CVE-2010-3565" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3565.html" />
          <reference source="CVE" ref_id="CVE-2010-3567" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3567.html" />
          <reference source="CVE" ref_id="CVE-2010-3568" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3568.html" />
          <reference source="CVE" ref_id="CVE-2010-3569" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3569.html" />
          <reference source="CVE" ref_id="CVE-2010-3573" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3573.html" />
          <reference source="CVE" ref_id="CVE-2010-3574" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3574.html" />
    
    <description>These packages provide the OpenJDK 6 Java Runtime Environment and the
OpenJDK 6 Software Development Kit.

defaultReadObject of the Serialization API could be tricked into setting a
volatile field multiple times, which could allow a remote attacker to
execute arbitrary code with the privileges of the user running the applet
or application. (CVE-2010-3569)

Race condition in the way objects were deserialized could allow an
untrusted applet or application to misuse the privileges of the user
running the applet or application. (CVE-2010-3568)

Miscalculation in the OpenType font rendering implementation caused
out-of-bounds memory access, which could allow remote attackers to execute
code with the privileges of the user running the java process.
(CVE-2010-3567)

JPEGImageWriter.writeImage in the imageio API improperly checked certain
image metadata, which could allow a remote attacker to execute arbitrary
code in the context of the user running the applet or application.
(CVE-2010-3565)

Double free in IndexColorModel could cause an untrusted applet or
application to crash or, possibly, execute arbitrary code with the
privileges of the user running the applet or application. (CVE-2010-3562)

The privileged accept method of the ServerSocket class in the Common Object
Request Broker Architecture (CORBA) implementation in OpenJDK allowed it to
receive connections from any host, instead of just the host of the current
connection. An attacker could use this flaw to bypass restrictions defined
by network permissions. (CVE-2010-3561)

Flaws in the Swing library could allow an untrusted application to modify
the behavior and state of certain JDK classes. (CVE-2010-3557)

Flaws in the CORBA implementation could allow an attacker to execute
arbitrary code by misusing permissions granted to certain system objects.
(CVE-2010-3554)

UIDefault.ProxyLazyValue had unsafe reflection usage, allowing untrusted
callers to create objects via ProxyLazyValue values. (CVE-2010-3553)

HttpURLConnection improperly handled the "chunked" transfer encoding
method, which could allow remote attackers to conduct HTTP response
splitting attacks. (CVE-2010-3549)

HttpURLConnection improperly checked whether the calling code was granted
the "allowHttpTrace" permission, allowing untrusted code to create HTTP
TRACE requests. (CVE-2010-3574)

HttpURLConnection did not validate request headers set by applets, which
could allow remote attackers to trigger actions otherwise restricted to
HTTP clients. (CVE-2010-3541, CVE-2010-3573)

The Kerberos implementation improperly checked the sanity of AP-REQ
requests, which could cause a denial of service condition in the receiving
Java Virtual Machine. (CVE-2010-3564)

The RHSA-2010:0339 update mitigated a man-in-the-middle attack in the way
the TLS/SSL (Transport Layer Security/Secure Sockets Layer) protocols
handle session renegotiation by disabling renegotiation. This update
implements the TLS Renegotiation Indication Extension as defined in RFC
5746, allowing secure renegotiation between updated clients and servers.
(CVE-2009-3555)

The NetworkInterface class improperly checked the network "connect"
permissions for local network addresses, which could allow remote attackers
to read local network addresses. (CVE-2010-3551)

Information leak flaw in the Java Naming and Directory Interface (JNDI)
could allow a remote attacker to access information about
otherwise-protected internal network names. (CVE-2010-3548)

Note: Flaws concerning applets in this advisory (CVE-2010-3568,
CVE-2010-3554, CVE-2009-3555, CVE-2010-3562, CVE-2010-3557, CVE-2010-3548,
CVE-2010-3564, CVE-2010-3565, CVE-2010-3569) can only be triggered in
OpenJDK by calling the "appletviewer" application.

Bug fixes:

* This update provides one defense in depth patch. (BZ#639922)

* Problems for certain SSL connections. In a reported case, this prevented
the JBoss JAAS modules from connecting over SSL to Microsoft Active
Directory servers. (BZ#618290)</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-13" />
        <updated date="2010-10-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3541.html">CVE-2010-3541</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3548.html">CVE-2010-3548</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3549.html">CVE-2010-3549</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3551.html">CVE-2010-3551</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3553.html">CVE-2010-3553</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3554.html">CVE-2010-3554</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3557.html">CVE-2010-3557</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3561.html">CVE-2010-3561</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3562.html">CVE-2010-3562</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3564.html">CVE-2010-3564</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3565.html">CVE-2010-3565</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3567.html">CVE-2010-3567</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3568.html">CVE-2010-3568</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3569.html">CVE-2010-3569</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3573.html">CVE-2010-3573</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3574.html">CVE-2010-3574</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/618290" id="618290">Error connecting to Active Directory (AD) over SSL.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639876" id="639876">CVE-2010-3568 OpenJDK Deserialization Race condition (6559775)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639880" id="639880">CVE-2010-3554 CVE-2010-3561  OpenJDK corba reflection vulnerabilities (6891766,6925672)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639897" id="639897">CVE-2010-3562 OpenJDK IndexColorModel double-free (6925710)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639904" id="639904">CVE-2010-3557 OpenJDK Swing mutable static (6938813)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639909" id="639909">CVE-2010-3548 OpenJDK DNS server IP address information leak (6957564)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639914" id="639914">CVE-2010-3564 OpenJDK kerberos vulnerability (6958060)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639920" id="639920">CVE-2010-3565 OpenJDK JPEG writeImage remote code execution (6963023)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639922" id="639922">CVE-2010-3566 OpenJDK ICC Profile remote code execution (6963489)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639925" id="639925">CVE-2010-3569 OpenJDK Serialization inconsistencies (6966692)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642167" id="642167">CVE-2010-3553 OpenJDK Swing unsafe reflection usage (6622002)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642180" id="642180">CVE-2010-3549 OpenJDK HttpURLConnection request splitting (6952017)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642187" id="642187">CVE-2010-3551 OpenJDK local network address disclosure (6952603)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642197" id="642197">CVE-2010-3567 OpenJDK ICU Opentype layout engine crash (6963285)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642202" id="642202">CVE-2010-3541 CVE-2010-3573 OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642215" id="642215">CVE-2010-3574 OpenJDK HttpURLConnection incomplete TRACE permission check (6981426)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100768002" comment="java-1.6.0-openjdk is earlier than 1:1.6.0.0-1.16.b17.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339003" comment="java-1.6.0-openjdk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100768008" comment="java-1.6.0-openjdk-src is earlier than 1:1.6.0.0-1.16.b17.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339011" comment="java-1.6.0-openjdk-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100768004" comment="java-1.6.0-openjdk-demo is earlier than 1:1.6.0.0-1.16.b17.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339007" comment="java-1.6.0-openjdk-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100768006" comment="java-1.6.0-openjdk-devel is earlier than 1:1.6.0.0-1.16.b17.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339009" comment="java-1.6.0-openjdk-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100768010" comment="java-1.6.0-openjdk-javadoc is earlier than 1:1.6.0.0-1.16.b17.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100339005" comment="java-1.6.0-openjdk-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100770" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0770: java-1.6.0-sun security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0770-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0770.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-1321" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1321.html" />
          <reference source="CVE" ref_id="CVE-2010-3541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3541.html" />
          <reference source="CVE" ref_id="CVE-2010-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3548.html" />
          <reference source="CVE" ref_id="CVE-2010-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3549.html" />
          <reference source="CVE" ref_id="CVE-2010-3550" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3550.html" />
          <reference source="CVE" ref_id="CVE-2010-3551" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3551.html" />
          <reference source="CVE" ref_id="CVE-2010-3552" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3552.html" />
          <reference source="CVE" ref_id="CVE-2010-3553" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3553.html" />
          <reference source="CVE" ref_id="CVE-2010-3554" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3554.html" />
          <reference source="CVE" ref_id="CVE-2010-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-3556" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3556.html" />
          <reference source="CVE" ref_id="CVE-2010-3557" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3557.html" />
          <reference source="CVE" ref_id="CVE-2010-3558" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3558.html" />
          <reference source="CVE" ref_id="CVE-2010-3559" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3559.html" />
          <reference source="CVE" ref_id="CVE-2010-3560" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3560.html" />
          <reference source="CVE" ref_id="CVE-2010-3561" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3561.html" />
          <reference source="CVE" ref_id="CVE-2010-3562" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3562.html" />
          <reference source="CVE" ref_id="CVE-2010-3563" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3563.html" />
          <reference source="CVE" ref_id="CVE-2010-3565" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3565.html" />
          <reference source="CVE" ref_id="CVE-2010-3566" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3566.html" />
          <reference source="CVE" ref_id="CVE-2010-3567" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3567.html" />
          <reference source="CVE" ref_id="CVE-2010-3568" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3568.html" />
          <reference source="CVE" ref_id="CVE-2010-3569" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3569.html" />
          <reference source="CVE" ref_id="CVE-2010-3570" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3570.html" />
          <reference source="CVE" ref_id="CVE-2010-3571" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3571.html" />
          <reference source="CVE" ref_id="CVE-2010-3572" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3572.html" />
          <reference source="CVE" ref_id="CVE-2010-3573" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3573.html" />
          <reference source="CVE" ref_id="CVE-2010-3574" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3574.html" />
    
    <description>The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and
the Sun Java 6 Software Development Kit.

This update fixes several vulnerabilities in the Sun Java 6 Runtime
Environment and the Sun Java 6 Software Development Kit. Further
information about these flaws can be found on the "Oracle Java SE and Java
for Business Critical Patch Update Advisory" page, listed in the References
section. (CVE-2010-1321, CVE-2010-3541, CVE-2010-3548, CVE-2010-3549,
CVE-2010-3550, CVE-2010-3551, CVE-2010-3552, CVE-2010-3553, CVE-2010-3554,
CVE-2010-3555, CVE-2010-3556, CVE-2010-3557, CVE-2010-3558, CVE-2010-3559,
CVE-2010-3560, CVE-2010-3561, CVE-2010-3562, CVE-2010-3563, CVE-2010-3565,
CVE-2010-3566, CVE-2010-3567, CVE-2010-3568, CVE-2010-3569, CVE-2010-3570,
CVE-2010-3571, CVE-2010-3572, CVE-2010-3573, CVE-2010-3574)

The RHSA-2010:0337 update mitigated a man-in-the-middle attack in the way
the TLS/SSL (Transport Layer Security/Secure Sockets Layer) protocols
handle session renegotiation by disabling renegotiation. This update
implements the TLS Renegotiation Indication Extension as defined in RFC
5746, allowing secure renegotiation between updated clients and servers.
(CVE-2009-3555)

Users of java-1.6.0-sun should upgrade to these updated packages, which
correct these issues. All running instances of Sun Java must be restarted
for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-14" />
        <updated date="2010-10-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1321.html">CVE-2010-1321</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3541.html">CVE-2010-3541</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3548.html">CVE-2010-3548</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3549.html">CVE-2010-3549</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3550.html">CVE-2010-3550</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3551.html">CVE-2010-3551</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3552.html">CVE-2010-3552</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3553.html">CVE-2010-3553</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3554.html">CVE-2010-3554</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3555.html">CVE-2010-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3556.html">CVE-2010-3556</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3557.html">CVE-2010-3557</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3558.html">CVE-2010-3558</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3559.html">CVE-2010-3559</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3560.html">CVE-2010-3560</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3561.html">CVE-2010-3561</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3562.html">CVE-2010-3562</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3563.html">CVE-2010-3563</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3565.html">CVE-2010-3565</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3566.html">CVE-2010-3566</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3567.html">CVE-2010-3567</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3568.html">CVE-2010-3568</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3569.html">CVE-2010-3569</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3570.html">CVE-2010-3570</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3571.html">CVE-2010-3571</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3572.html">CVE-2010-3572</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3573.html">CVE-2010-3573</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3574.html">CVE-2010-3574</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582466" id="582466">CVE-2010-1321 krb5: null pointer dereference in GSS-API library leads to DoS (MITKRB5-SA-2010-005)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639876" id="639876">CVE-2010-3568 OpenJDK Deserialization Race condition (6559775)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639880" id="639880">CVE-2010-3554 CVE-2010-3561  OpenJDK corba reflection vulnerabilities (6891766,6925672)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639897" id="639897">CVE-2010-3562 OpenJDK IndexColorModel double-free (6925710)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639904" id="639904">CVE-2010-3557 OpenJDK Swing mutable static (6938813)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639909" id="639909">CVE-2010-3548 OpenJDK DNS server IP address information leak (6957564)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639920" id="639920">CVE-2010-3565 OpenJDK JPEG writeImage remote code execution (6963023)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639922" id="639922">CVE-2010-3566 OpenJDK ICC Profile remote code execution (6963489)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639925" id="639925">CVE-2010-3569 OpenJDK Serialization inconsistencies (6966692)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642167" id="642167">CVE-2010-3553 OpenJDK Swing unsafe reflection usage (6622002)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642180" id="642180">CVE-2010-3549 OpenJDK HttpURLConnection request splitting (6952017)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642187" id="642187">CVE-2010-3551 OpenJDK local network address disclosure (6952603)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642197" id="642197">CVE-2010-3567 OpenJDK ICU Opentype layout engine crash (6963285)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642202" id="642202">CVE-2010-3541 CVE-2010-3573 OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642215" id="642215">CVE-2010-3574 OpenJDK HttpURLConnection incomplete TRACE permission check (6981426)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642558" id="642558">CVE-2010-3555 JDK unspecified vulnerability in Deployment component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642559" id="642559">CVE-2010-3550 JDK unspecified vulnerability in Java Web Start component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642561" id="642561">CVE-2010-3570 JDK unspecified vulnerability in Deployment Toolkit</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642573" id="642573">CVE-2010-3560 JDK unspecified vulnerability in Networking component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642576" id="642576">CVE-2010-3556 JDK unspecified vulnerability in 2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642585" id="642585">CVE-2010-3571 JDK unspecified vulnerability in 2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642589" id="642589">CVE-2010-3563 JDK unspecified vulnerability in Deployment component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642593" id="642593">CVE-2010-3558 JDK unspecified vulnerability in Java Web Start component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642600" id="642600">CVE-2010-3552 JDK unspecified vulnerability in New Java Plugin component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642606" id="642606">CVE-2010-3559 JDK unspecified vulnerability in Sound component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642611" id="642611">CVE-2010-3572 JDK unspecified vulnerability in Sound component</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100770012" comment="java-1.6.0-sun-jdbc is earlier than 1:1.6.0.22-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337011" comment="java-1.6.0-sun-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100770002" comment="java-1.6.0-sun is earlier than 1:1.6.0.22-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337003" comment="java-1.6.0-sun is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100770010" comment="java-1.6.0-sun-demo is earlier than 1:1.6.0.22-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337005" comment="java-1.6.0-sun-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100770006" comment="java-1.6.0-sun-plugin is earlier than 1:1.6.0.22-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337013" comment="java-1.6.0-sun-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100770004" comment="java-1.6.0-sun-src is earlier than 1:1.6.0.22-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337009" comment="java-1.6.0-sun-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100770008" comment="java-1.6.0-sun-devel is earlier than 1:1.6.0.22-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100337007" comment="java-1.6.0-sun-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100779" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0779: kernel security and bug fix update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0779-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0779.html" />
          <reference source="CVE" ref_id="CVE-2010-2942" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2942.html" />
          <reference source="CVE" ref_id="CVE-2010-3067" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3067.html" />
          <reference source="CVE" ref_id="CVE-2010-3477" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3477.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* Information leak flaws were found in the Linux kernel Traffic Control
Unit implementation. A local attacker could use these flaws to cause the
kernel to leak kernel memory to user-space, possibly leading to the
disclosure of sensitive information. (CVE-2010-2942, Moderate)

* A flaw was found in the tcf_act_police_dump() function in the Linux
kernel network traffic policing implementation. A data structure in
tcf_act_police_dump() was not initialized properly before being copied to
user-space. A local, unprivileged user could use this flaw to cause an
information leak. (CVE-2010-3477, Moderate)

* A missing upper bound integer check was found in the sys_io_submit()
function in the Linux kernel asynchronous I/O implementation. A local,
unprivileged user could use this flaw to cause an information leak.
(CVE-2010-3067, Low)

Red Hat would like to thank Tavis Ormandy for reporting CVE-2010-3067.

This update also fixes the following bugs:

* When two systems using bonding devices in the adaptive load balancing
(ALB) mode communicated with each other, an endless loop of ARP replies
started between these two systems due to a faulty MAC address update. With
this update, the MAC address update no longer creates unneeded ARP replies.
(BZ#629239)

* When running the Connectathon NFS Testsuite with certain clients and Red
Hat Enterprise Linux 4.8 as the server, nfsvers4, lock, and test2 failed
the Connectathon test. (BZ#625535)

* For UDP/UNIX domain sockets, due to insufficient memory barriers in the
network code, a process sleeping in select() may have missed notifications
about new data. In rare cases, this bug may have caused a process to sleep
forever. (BZ#640117)

* In certain situations, a bug found in either the HTB or TBF network
packet schedulers in the Linux kernel could have caused a kernel panic when
using Broadcom network cards with the bnx2 driver. (BZ#624363)

* Previously, allocating fallback cqr for DASD reserve/release IOCTLs
failed because it used the memory pool of the respective device. This
update preallocates sufficient memory for a single reserve/release request.
(BZ#626828)

* In some situations a bug prevented "force online" succeeding for a DASD
device. (BZ#626827)

* Using the "fsstress" utility may have caused a kernel panic. (BZ#633968)

* This update introduces additional stack guard patches. (BZ#632515)

* A bug was found in the way the megaraid_sas driver handled physical disks
and management IOCTLs. All physical disks were exported to the disk layer,
allowing an oops in megasas_complete_cmd_dpc() when completing the IOCTL
command if a timeout occurred. (BZ#631903)

* Previously, a warning message was returned when a large amount of
messages was passed through netconsole and a considerable amount of network
load was added. With this update, the warning message is no longer
displayed. (BZ#637729)

* Executing a large "dd" command (1 to 5GB) on an iSCSI device with the
qla3xxx driver caused a system crash due to the incorrect storing of a
private data structure. With this update, the size of the stored data
structure is checked and the system crashes no longer occur. (BZ#624364)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-19" />
        <updated date="2010-10-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2942.html">CVE-2010-2942</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3067.html">CVE-2010-3067</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3477.html">CVE-2010-3477</cve>
                <bugzilla href="http://bugzilla.redhat.com/624363" id="624363">bnx2: panic in bnx2_poll_work() [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624364" id="624364">system crashes due to corrupt net_device_wrapper structure [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624903" id="624903">CVE-2010-2942 kernel: net sched: fix some kernel memory leaks</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625535" id="625535">[Kernel] cthon nfsvers4, lock, test2 failing with rhel6 client vs. rhel4 server [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/626827" id="626827">dasd: force online does not work. [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/626828" id="626828">dasd: allocate fallback cqr for reserve/release [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/629239" id="629239">[4u8] Bonding in ALB mode sends ARP in loop [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/629441" id="629441">CVE-2010-3067 kernel: do_io_submit() infoleak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/631903" id="631903">megaraid_sas: fix physical disk handling [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/632515" id="632515">kernel: additional stack guard patches [rhel-4.9] [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/633968" id="633968">kernel BUG at fs/mpage.c:417! [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/636386" id="636386">CVE-2010-3477 kernel: net/sched/act_police.c infoleak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637729" id="637729">netconsole on e1000 cause "Badness in local_bh_enable at kernel/softirq.c:141" [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640117" id="640117">[RHEL4.5] select() cannot return in UDP/UNIX domain socket [rhel-4.8.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779002" comment="kernel is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779022" comment="kernel-doc is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779004" comment="kernel-devel is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779008" comment="kernel-smp-devel is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779020" comment="kernel-hugemem is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779016" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779014" comment="kernel-largesmp is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779010" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779006" comment="kernel-xenU is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779018" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100779012" comment="kernel-smp is earlier than 0:2.6.9-89.31.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100780" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0780: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0780-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0780.html" />
          <reference source="CVE" ref_id="CVE-2010-3176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3176.html" />
          <reference source="CVE" ref_id="CVE-2010-3180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3180.html" />
          <reference source="CVE" ref_id="CVE-2010-3182" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3182.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the processing of malformed HTML mail content.
An HTML mail message containing malicious content could cause Thunderbird
to crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2010-3176, CVE-2010-3180)

Note: JavaScript support is disabled by default in Thunderbird. The above
issues are not exploitable unless JavaScript is enabled.

A flaw was found in the script that launches Thunderbird. The
LD_LIBRARY_PATH variable was appending a "." character, which could allow a
local attacker to execute arbitrary code with the privileges of a different
user running Thunderbird, if that user ran Thunderbird from within an
attacker-controlled directory. (CVE-2010-3182)

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-19" />
        <updated date="2010-10-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3176.html">CVE-2010-3176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3180.html">CVE-2010-3180</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3182.html">CVE-2010-3182</cve>
                <bugzilla href="http://bugzilla.redhat.com/642272" id="642272">CVE-2010-3176 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642283" id="642283">CVE-2010-3180 Mozilla use-after-free error in nsBarProp</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642300" id="642300">CVE-2010-3182 Mozilla unsafe library loading flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100780002" comment="thunderbird is earlier than 0:2.0.0.24-9.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100153003" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100780005" comment="thunderbird is earlier than 0:1.5.0.12-31.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100154003" comment="thunderbird is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100781" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0781: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0781-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0781.html" />
          <reference source="CVE" ref_id="CVE-2010-3170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3170.html" />
          <reference source="CVE" ref_id="CVE-2010-3173" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3173.html" />
          <reference source="CVE" ref_id="CVE-2010-3176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3176.html" />
          <reference source="CVE" ref_id="CVE-2010-3177" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3177.html" />
          <reference source="CVE" ref_id="CVE-2010-3180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3180.html" />
          <reference source="CVE" ref_id="CVE-2010-3182" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3182.html" />
    
    <description>SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause SeaMonkey to crash or,
potentially, execute arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2010-3176, CVE-2010-3180)

A flaw was found in the way the Gopher parser in SeaMonkey converted text
into HTML. A malformed file name on a Gopher server could, when accessed by
a victim running SeaMonkey, allow arbitrary JavaScript to be executed in
the context of the Gopher domain. (CVE-2010-3177)

A flaw was found in the script that launches SeaMonkey. The LD_LIBRARY_PATH
variable was appending a "." character, which could allow a local attacker
to execute arbitrary code with the privileges of a different user running
SeaMonkey, if that user ran SeaMonkey from within an attacker-controlled
directory. (CVE-2010-3182)

It was found that the SSL DHE (Diffie-Hellman Ephemeral) mode
implementation for key exchanges in SeaMonkey accepted DHE keys that were
256 bits in length. This update removes support for 256 bit DHE keys, as
such keys are easily broken using modern hardware. (CVE-2010-3173)

A flaw was found in the way SeaMonkey matched SSL certificates when the
certificates had a Common Name containing a wildcard and a partial IP
address. SeaMonkey incorrectly accepted connections to IP addresses that
fell within the SSL certificate's wildcard range as valid SSL connections,
possibly allowing an attacker to conduct a man-in-the-middle attack.
(CVE-2010-3170)

All SeaMonkey users should upgrade to these updated packages, which correct
these issues. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-19" />
        <updated date="2010-10-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3170.html">CVE-2010-3170</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3173.html">CVE-2010-3173</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3176.html">CVE-2010-3176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3177.html">CVE-2010-3177</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3180.html">CVE-2010-3180</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3182.html">CVE-2010-3182</cve>
                <bugzilla href="http://bugzilla.redhat.com/630047" id="630047">CVE-2010-3170 firefox/nss: doesn't handle IP-based wildcards in X509 certificates safely</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642272" id="642272">CVE-2010-3176 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642283" id="642283">CVE-2010-3180 Mozilla use-after-free error in nsBarProp</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642290" id="642290">CVE-2010-3177 Mozilla XSS in gopher parser when parsing hrefs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642300" id="642300">CVE-2010-3182 Mozilla unsafe library loading flaw</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642302" id="642302">CVE-2010-3173 NSS: insecure Diffie-Hellman key exchange</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781012" comment="seamonkey-nspr is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113013" comment="seamonkey-nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781008" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781006" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113019" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781014" comment="seamonkey-mail is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781002" comment="seamonkey is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781004" comment="seamonkey-devel is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781020" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113011" comment="seamonkey-nss-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781018" comment="seamonkey-nss is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113005" comment="seamonkey-nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781010" comment="seamonkey-chat is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781016" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.61.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781025" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-64.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781026" comment="seamonkey-mail is earlier than 0:1.0.9-64.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781023" comment="seamonkey is earlier than 0:1.0.9-64.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781024" comment="seamonkey-devel is earlier than 0:1.0.9-64.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781027" comment="seamonkey-chat is earlier than 0:1.0.9-64.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100781028" comment="seamonkey-js-debugger is earlier than 0:1.0.9-64.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100782" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0782: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0782-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0782.html" />
          <reference source="CVE" ref_id="CVE-2010-3170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3170.html" />
          <reference source="CVE" ref_id="CVE-2010-3173" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3173.html" />
          <reference source="CVE" ref_id="CVE-2010-3175" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3175.html" />
          <reference source="CVE" ref_id="CVE-2010-3176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3176.html" />
          <reference source="CVE" ref_id="CVE-2010-3177" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3177.html" />
          <reference source="CVE" ref_id="CVE-2010-3178" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3178.html" />
          <reference source="CVE" ref_id="CVE-2010-3179" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3179.html" />
          <reference source="CVE" ref_id="CVE-2010-3180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3180.html" />
          <reference source="CVE" ref_id="CVE-2010-3182" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3182.html" />
          <reference source="CVE" ref_id="CVE-2010-3183" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3183.html" />
    
    <description>Mozilla Firefox is an open source web browser. XULRunner provides the XUL
Runtime environment for Mozilla Firefox. Network Security Services (NSS) is
a set of libraries designed to support the development of security-enabled
client and server applications.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-3175, CVE-2010-3176, CVE-2010-3179, CVE-2010-3183,
CVE-2010-3180)

A flaw was found in the way the Gopher parser in Firefox converted text
into HTML. A malformed file name on a Gopher server could, when accessed by
a victim running Firefox, allow arbitrary JavaScript to be executed in the
context of the Gopher domain. (CVE-2010-3177)

A same-origin policy bypass flaw was found in Firefox. An attacker could
create a malicious web page that, when viewed by a victim, could steal
private data from a different website the victim has loaded with Firefox.
(CVE-2010-3178)

A flaw was found in the script that launches Firefox. The LD_LIBRARY_PATH
variable was appending a "." character, which could allow a local attacker
to execute arbitrary code with the privileges of a different user running
Firefox, if that user ran Firefox from within an attacker-controlled
directory. (CVE-2010-3182)

This update also provides NSS version 3.12.8 which is required by the
updated Firefox version, fixing the following security issues:

It was found that the SSL DHE (Diffie-Hellman Ephemeral) mode
implementation for key exchanges in Firefox accepted DHE keys that were 256
bits in length. This update removes support for 256 bit DHE keys, as such
keys are easily broken using modern hardware. (CVE-2010-3173)

A flaw was found in the way NSS matched SSL certificates when the
certificates had a Common Name containing a wildcard and a partial IP
address. NSS incorrectly accepted connections to IP addresses that fell
within the SSL certificate's wildcard range as valid SSL connections,
possibly allowing an attacker to conduct a man-in-the-middle attack.
(CVE-2010-3170)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.6.11. You can find a link to the Mozilla
advisories in the References section of this erratum.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.6.11, which corrects these issues. After installing the
update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-19" />
        <updated date="2010-10-19" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3170.html">CVE-2010-3170</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3173.html">CVE-2010-3173</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3175.html">CVE-2010-3175</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3176.html">CVE-2010-3176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3177.html">CVE-2010-3177</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3178.html">CVE-2010-3178</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3179.html">CVE-2010-3179</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3180.html">CVE-2010-3180</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3182.html">CVE-2010-3182</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3183.html">CVE-2010-3183</cve>
                <bugzilla href="http://bugzilla.redhat.com/630047" id="630047">CVE-2010-3170 firefox/nss: doesn't handle IP-based wildcards in X509 certificates safely</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642272" id="642272">CVE-2010-3176 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642275" id="642275">CVE-2010-3175 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642277" id="642277">CVE-2010-3179 Mozilla buffer overflow and memory corruption using document.write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642283" id="642283">CVE-2010-3180 Mozilla use-after-free error in nsBarProp</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642286" id="642286">CVE-2010-3183 Mozilla dangling pointer vulnerability in LookupGetterOrSetter</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642290" id="642290">CVE-2010-3177 Mozilla XSS in gopher parser when parsing hrefs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642294" id="642294">CVE-2010-3178 Mozilla cross-site information disclosure via modal calls</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642300" id="642300">CVE-2010-3182 Mozilla unsafe library loading flaw</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642302" id="642302">CVE-2010-3173 NSS: insecure Diffie-Hellman key exchange</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782002" comment="xulrunner is earlier than 0:1.9.2.11-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782004" comment="xulrunner-devel is earlier than 0:1.9.2.11-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782006" comment="firefox is earlier than 0:3.6.11-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112009" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782008" comment="nss is earlier than 0:3.12.8-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165007" comment="nss is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782012" comment="nss-tools is earlier than 0:3.12.8-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165011" comment="nss-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782014" comment="nss-pkcs11-devel is earlier than 0:3.12.8-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165009" comment="nss-pkcs11-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782010" comment="nss-devel is earlier than 0:3.12.8-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165013" comment="nss-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782017" comment="firefox is earlier than 0:3.6.11-2.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782019" comment="nss is earlier than 0:3.12.8-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165020" comment="nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782021" comment="nss-tools is earlier than 0:3.12.8-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165022" comment="nss-tools is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100782023" comment="nss-devel is earlier than 0:3.12.8-1.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100165024" comment="nss-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100785" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0785: quagga security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0785-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0785.html" />
          <reference source="CVE" ref_id="CVE-2007-4826" ref_url="https://www.redhat.com/security/data/cve/CVE-2007-4826.html" />
          <reference source="CVE" ref_id="CVE-2010-2948" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2948.html" />
    
    <description>Quagga is a TCP/IP based routing software suite. The Quagga bgpd daemon
implements the BGP (Border Gateway Protocol) routing protocol.

A stack-based buffer overflow flaw was found in the way the Quagga bgpd
daemon processed certain BGP Route Refresh (RR) messages. A configured BGP
peer could send a specially-crafted BGP message, causing bgpd on a target
system to crash or, possibly, execute arbitrary code with the privileges of
the user running bgpd. (CVE-2010-2948)

Note: On Red Hat Enterprise Linux 5 it is not possible to exploit
CVE-2010-2948 to run arbitrary code as the overflow is blocked by
FORTIFY_SOURCE.

Multiple NULL pointer dereference flaws were found in the way the Quagga
bgpd daemon processed certain specially-crafted BGP messages. A configured
BGP peer could crash bgpd on a target system via specially-crafted BGP
messages. (CVE-2007-4826)

Users of quagga should upgrade to these updated packages, which contain
backported patches to correct these issues. After installing the updated
packages, the bgpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-20" />
        <updated date="2010-10-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2007-4826.html">CVE-2007-4826</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2948.html">CVE-2010-2948</cve>
                <bugzilla href="http://bugzilla.redhat.com/285691" id="285691">CVE-2007-4826 quagga bgpd DoS</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/626783" id="626783">CVE-2010-2948 Quagga (bgpd): Stack buffer overflow by processing certain Route-Refresh messages</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100785004" comment="quagga-devel is earlier than 0:0.98.6-5.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100785005" comment="quagga-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100785006" comment="quagga-contrib is earlier than 0:0.98.6-5.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100785007" comment="quagga-contrib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100785002" comment="quagga is earlier than 0:0.98.6-5.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100785003" comment="quagga is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100785011" comment="quagga-devel is earlier than 0:0.98.3-4.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100785012" comment="quagga-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100785013" comment="quagga-contrib is earlier than 0:0.98.3-4.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100785014" comment="quagga-contrib is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100785009" comment="quagga is earlier than 0:0.98.3-4.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100785010" comment="quagga is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100786" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0786: java-1.4.2-ibm security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0786-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0786.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-3541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3541.html" />
          <reference source="CVE" ref_id="CVE-2010-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3548.html" />
          <reference source="CVE" ref_id="CVE-2010-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3549.html" />
          <reference source="CVE" ref_id="CVE-2010-3551" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3551.html" />
          <reference source="CVE" ref_id="CVE-2010-3553" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3553.html" />
          <reference source="CVE" ref_id="CVE-2010-3556" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3556.html" />
          <reference source="CVE" ref_id="CVE-2010-3557" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3557.html" />
          <reference source="CVE" ref_id="CVE-2010-3562" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3562.html" />
          <reference source="CVE" ref_id="CVE-2010-3565" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3565.html" />
          <reference source="CVE" ref_id="CVE-2010-3568" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3568.html" />
          <reference source="CVE" ref_id="CVE-2010-3569" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3569.html" />
          <reference source="CVE" ref_id="CVE-2010-3571" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3571.html" />
          <reference source="CVE" ref_id="CVE-2010-3572" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3572.html" />
    
    <description>The IBM 1.4.2 SR13-FP6 Java release includes the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit. These
vulnerabilities are summarized on the IBM "Security alerts" page listed in
the References section. (CVE-2010-3541, CVE-2010-3548, CVE-2010-3549,
CVE-2010-3551, CVE-2010-3553, CVE-2010-3556, CVE-2010-3557, CVE-2010-3562,
CVE-2010-3565, CVE-2010-3568, CVE-2010-3569, CVE-2010-3571, CVE-2010-3572)

The RHSA-2010:0155 update mitigated a man-in-the-middle attack in the way
the TLS/SSL (Transport Layer Security/Secure Sockets Layer) protocols
handle session renegotiation by disabling renegotiation. This update
implements the TLS Renegotiation Indication Extension as defined in RFC
5746, allowing secure renegotiation between updated clients and servers.
(CVE-2009-3555)

All users of java-1.4.2-ibm are advised to upgrade to these updated
packages, which contain the IBM 1.4.2 SR13-FP6 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-20" />
        <updated date="2010-10-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3541.html">CVE-2010-3541</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3548.html">CVE-2010-3548</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3549.html">CVE-2010-3549</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3551.html">CVE-2010-3551</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3553.html">CVE-2010-3553</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3556.html">CVE-2010-3556</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3557.html">CVE-2010-3557</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3562.html">CVE-2010-3562</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3565.html">CVE-2010-3565</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3568.html">CVE-2010-3568</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3569.html">CVE-2010-3569</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3571.html">CVE-2010-3571</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3572.html">CVE-2010-3572</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639876" id="639876">CVE-2010-3568 OpenJDK Deserialization Race condition (6559775)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639897" id="639897">CVE-2010-3562 OpenJDK IndexColorModel double-free (6925710)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639904" id="639904">CVE-2010-3557 OpenJDK Swing mutable static (6938813)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639909" id="639909">CVE-2010-3548 OpenJDK DNS server IP address information leak (6957564)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639920" id="639920">CVE-2010-3565 OpenJDK JPEG writeImage remote code execution (6963023)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639925" id="639925">CVE-2010-3569 OpenJDK Serialization inconsistencies (6966692)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642167" id="642167">CVE-2010-3553 OpenJDK Swing unsafe reflection usage (6622002)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642180" id="642180">CVE-2010-3549 OpenJDK HttpURLConnection request splitting (6952017)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642187" id="642187">CVE-2010-3551 OpenJDK local network address disclosure (6952603)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642202" id="642202">CVE-2010-3541 CVE-2010-3573 OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642576" id="642576">CVE-2010-3556 JDK unspecified vulnerability in 2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642585" id="642585">CVE-2010-3571 JDK unspecified vulnerability in 2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642611" id="642611">CVE-2010-3572 JDK unspecified vulnerability in Sound component</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100786002" comment="java-1.4.2-ibm is earlier than 0:1.4.2.13.6-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155003" comment="java-1.4.2-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100786012" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.13.6-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155011" comment="java-1.4.2-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100786006" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.13.6-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155007" comment="java-1.4.2-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100786004" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.13.6-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155005" comment="java-1.4.2-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100786008" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.13.6-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155009" comment="java-1.4.2-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100786014" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.13.6-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155015" comment="java-1.4.2-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100786010" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.13.6-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155013" comment="java-1.4.2-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100787" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0787: glibc security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0787-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0787.html" />
          <reference source="CVE" ref_id="CVE-2010-3847" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3847.html" />
    
    <description>The glibc packages contain the standard C libraries used by multiple
programs on the system. These packages contain the standard C and the
standard math libraries. Without these two libraries, a Linux system cannot
function properly.

It was discovered that the glibc dynamic linker/loader did not handle the
$ORIGIN dynamic string token set in the LD_AUDIT environment variable
securely. A local attacker with write access to a file system containing
setuid or setgid binaries could use this flaw to escalate their privileges.
(CVE-2010-3847)

Red Hat would like to thank Tavis Ormandy for reporting this issue.

All users should upgrade to these updated packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-20" />
        <updated date="2010-10-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3847.html">CVE-2010-3847</cve>
                <bugzilla href="http://bugzilla.redhat.com/643306" id="643306">CVE-2010-3847 glibc: ld.so insecure handling of $ORIGIN in LD_AUDIT for setuid/setgid programs</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100787012" comment="glibc-headers is earlier than 0:2.5-49.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787013" comment="glibc-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100787008" comment="glibc-common is earlier than 0:2.5-49.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787009" comment="glibc-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100787006" comment="glibc-devel is earlier than 0:2.5-49.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787007" comment="glibc-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100787002" comment="glibc is earlier than 0:2.5-49.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787003" comment="glibc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100787010" comment="nscd is earlier than 0:2.5-49.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787011" comment="nscd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100787004" comment="glibc-utils is earlier than 0:2.5-49.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787005" comment="glibc-utils is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100788" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0788: pidgin security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0788-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0788.html" />
          <reference source="CVE" ref_id="CVE-2010-1624" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1624.html" />
          <reference source="CVE" ref_id="CVE-2010-3711" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3711.html" />
    
    <description>Pidgin is an instant messaging program which can log in to multiple
accounts on multiple instant messaging networks simultaneously.

Multiple NULL pointer dereference flaws were found in the way Pidgin
handled Base64 decoding. A remote attacker could use these flaws to crash
Pidgin if the target Pidgin user was using the Yahoo! Messenger Protocol,
MSN, MySpace, or Extensible Messaging and Presence Protocol (XMPP) protocol
plug-ins, or using the Microsoft NT LAN Manager (NTLM) protocol for
authentication. (CVE-2010-3711)

A NULL pointer dereference flaw was found in the way the Pidgin MSN
protocol plug-in processed custom emoticon messages. A remote attacker
could use this flaw to crash Pidgin by sending specially-crafted emoticon
messages during mutual communication. (CVE-2010-1624)

Red Hat would like to thank the Pidgin project for reporting these issues.
Upstream acknowledges Daniel Atallah as the original reporter of
CVE-2010-3711, and Pierre Noguès of Meta Security as the original reporter
of CVE-2010-1624.

All Pidgin users should upgrade to these updated packages, which contain
backported patches to resolve these issues. Pidgin must be restarted for
this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-21" />
        <updated date="2010-10-21" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1624.html">CVE-2010-1624</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3711.html">CVE-2010-3711</cve>
                <bugzilla href="http://bugzilla.redhat.com/589973" id="589973">CVE-2010-1624 Pidgin: MSN SLP emoticon DoS (NULL pointer dereference)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641921" id="641921">CVE-2010-3711 Pidgin (libpurple): Multiple DoS (crash) flaws by processing of unsanitized Base64 decoder values</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788018" comment="libpurple-perl is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044005" comment="libpurple-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788014" comment="finch is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044009" comment="finch is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788006" comment="libpurple is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044015" comment="libpurple is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788002" comment="pidgin is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044003" comment="pidgin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788016" comment="pidgin-perl is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044007" comment="pidgin-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788012" comment="libpurple-devel is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044019" comment="libpurple-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788008" comment="pidgin-devel is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044017" comment="pidgin-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788004" comment="finch-devel is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044011" comment="finch-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788010" comment="libpurple-tcl is earlier than 0:2.6.6-5.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044013" comment="libpurple-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788033" comment="libpurple-perl is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044038" comment="libpurple-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788031" comment="libpurple is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044032" comment="libpurple is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788029" comment="finch is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044036" comment="finch is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788021" comment="pidgin is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044022" comment="pidgin is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788035" comment="pidgin-perl is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044026" comment="pidgin-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788027" comment="libpurple-devel is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044024" comment="libpurple-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788025" comment="finch-devel is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044028" comment="finch-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788023" comment="pidgin-devel is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044030" comment="pidgin-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100788037" comment="libpurple-tcl is earlier than 0:2.6.6-5.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100044034" comment="libpurple-tcl is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100792" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0792: kernel security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0792-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0792.html" />
          <reference source="CVE" ref_id="CVE-2010-3904" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3904.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issue:

* The rds_page_copy_user() function in the Linux kernel Reliable Datagram
Sockets (RDS) protocol implementation was missing sanity checks. A local,
unprivileged user could use this flaw to escalate their privileges.
(CVE-2010-3904, Important)

Red Hat would like to thank Dan Rosenberg of Virtual Security Research for
reporting this issue.

Users should upgrade to these updated packages, which contain a backported
patch to correct this issue. The system must be rebooted for this update to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-25" />
        <updated date="2010-10-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3904.html">CVE-2010-3904</cve>
                <bugzilla href="http://bugzilla.redhat.com/642896" id="642896">CVE-2010-3904 kernel: RDS sockets local privilege escalation</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792004" comment="kernel-headers is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792002" comment="kernel is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792024" comment="kernel-doc is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792022" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792010" comment="kernel-devel is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792012" comment="kernel-debug is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792018" comment="kernel-kdump is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792008" comment="kernel-xen-devel is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792006" comment="kernel-debug-devel is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792020" comment="kernel-PAE is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792016" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100792014" comment="kernel-xen is earlier than 0:2.6.18-194.17.4.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100793" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0793: glibc security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0793-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0793.html" />
          <reference source="CVE" ref_id="CVE-2010-3856" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3856.html" />
    
    <description>The glibc packages contain the standard C libraries used by multiple
programs on the system. These packages contain the standard C and the
standard math libraries. Without these two libraries, a Linux system cannot
function properly.

It was discovered that the glibc dynamic linker/loader did not perform
sufficient safety checks when loading dynamic shared objects (DSOs) to
provide callbacks for its auditing API during the execution of
privileged programs. A local attacker could use this flaw to escalate
their privileges via a carefully-chosen system DSO library containing
unsafe constructors. (CVE-2010-3856)

Red Hat would like to thank Ben Hawkes and Tavis Ormandy for reporting this
issue.

All users should upgrade to these updated packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-25" />
        <updated date="2010-10-25" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3856.html">CVE-2010-3856</cve>
                <bugzilla href="http://bugzilla.redhat.com/645672" id="645672">CVE-2010-3856 glibc: ld.so arbitrary DSO loading via LD_AUDIT in setuid/setgid programs</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100793010" comment="glibc-common is earlier than 0:2.5-49.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787009" comment="glibc-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100793006" comment="glibc-headers is earlier than 0:2.5-49.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787013" comment="glibc-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100793008" comment="glibc-devel is earlier than 0:2.5-49.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787007" comment="glibc-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100793002" comment="glibc is earlier than 0:2.5-49.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787003" comment="glibc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100793012" comment="nscd is earlier than 0:2.5-49.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787011" comment="nscd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100793004" comment="glibc-utils is earlier than 0:2.5-49.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100787005" comment="glibc-utils is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100807" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0807: java-1.5.0-ibm security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0807-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0807.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-1321" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1321.html" />
          <reference source="CVE" ref_id="CVE-2010-3541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3541.html" />
          <reference source="CVE" ref_id="CVE-2010-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3548.html" />
          <reference source="CVE" ref_id="CVE-2010-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3549.html" />
          <reference source="CVE" ref_id="CVE-2010-3550" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3550.html" />
          <reference source="CVE" ref_id="CVE-2010-3551" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3551.html" />
          <reference source="CVE" ref_id="CVE-2010-3556" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3556.html" />
          <reference source="CVE" ref_id="CVE-2010-3559" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3559.html" />
          <reference source="CVE" ref_id="CVE-2010-3562" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3562.html" />
          <reference source="CVE" ref_id="CVE-2010-3565" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3565.html" />
          <reference source="CVE" ref_id="CVE-2010-3566" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3566.html" />
          <reference source="CVE" ref_id="CVE-2010-3568" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3568.html" />
          <reference source="CVE" ref_id="CVE-2010-3569" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3569.html" />
          <reference source="CVE" ref_id="CVE-2010-3572" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3572.html" />
          <reference source="CVE" ref_id="CVE-2010-3573" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3573.html" />
          <reference source="CVE" ref_id="CVE-2010-3574" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3574.html" />
    
    <description>The IBM 1.5.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit. Detailed
vulnerability descriptions are linked from the IBM "Security alerts" page,
listed in the References section. (CVE-2010-1321, CVE-2010-3541,
CVE-2010-3548, CVE-2010-3549, CVE-2010-3550, CVE-2010-3551, CVE-2010-3556,
CVE-2010-3559, CVE-2010-3562, CVE-2010-3565, CVE-2010-3566, CVE-2010-3568,
CVE-2010-3569, CVE-2010-3572, CVE-2010-3573, CVE-2010-3574)

The RHSA-2010:0130 update mitigated a man-in-the-middle attack in the way
the TLS/SSL (Transport Layer Security/Secure Sockets Layer) protocols
handle session renegotiation by disabling renegotiation. This update
implements the TLS Renegotiation Indication Extension as defined in RFC
5746, allowing secure renegotiation between updated clients and servers.
(CVE-2009-3555)

All users of java-1.5.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.5.0 SR12-FP2 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-27" />
        <updated date="2010-10-27" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1321.html">CVE-2010-1321</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3541.html">CVE-2010-3541</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3548.html">CVE-2010-3548</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3549.html">CVE-2010-3549</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3550.html">CVE-2010-3550</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3551.html">CVE-2010-3551</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3556.html">CVE-2010-3556</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3559.html">CVE-2010-3559</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3562.html">CVE-2010-3562</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3565.html">CVE-2010-3565</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3566.html">CVE-2010-3566</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3568.html">CVE-2010-3568</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3569.html">CVE-2010-3569</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3572.html">CVE-2010-3572</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3573.html">CVE-2010-3573</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3574.html">CVE-2010-3574</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582466" id="582466">CVE-2010-1321 krb5: null pointer dereference in GSS-API library leads to DoS (MITKRB5-SA-2010-005)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639876" id="639876">CVE-2010-3568 OpenJDK Deserialization Race condition (6559775)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639897" id="639897">CVE-2010-3562 OpenJDK IndexColorModel double-free (6925710)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639909" id="639909">CVE-2010-3548 OpenJDK DNS server IP address information leak (6957564)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639920" id="639920">CVE-2010-3565 OpenJDK JPEG writeImage remote code execution (6963023)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639922" id="639922">CVE-2010-3566 OpenJDK ICC Profile remote code execution (6963489)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639925" id="639925">CVE-2010-3569 OpenJDK Serialization inconsistencies (6966692)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642180" id="642180">CVE-2010-3549 OpenJDK HttpURLConnection request splitting (6952017)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642187" id="642187">CVE-2010-3551 OpenJDK local network address disclosure (6952603)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642202" id="642202">CVE-2010-3541 CVE-2010-3573 OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642215" id="642215">CVE-2010-3574 OpenJDK HttpURLConnection incomplete TRACE permission check (6981426)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642559" id="642559">CVE-2010-3550 JDK unspecified vulnerability in Java Web Start component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642576" id="642576">CVE-2010-3556 JDK unspecified vulnerability in 2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642606" id="642606">CVE-2010-3559 JDK unspecified vulnerability in Sound component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642611" id="642611">CVE-2010-3572 JDK unspecified vulnerability in Sound component</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100807016" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.12.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130007" comment="java-1.5.0-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100807002" comment="java-1.5.0-ibm is earlier than 1:1.5.0.12.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130003" comment="java-1.5.0-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100807004" comment="java-1.5.0-ibm-accessibility is earlier than 1:1.5.0.12.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130005" comment="java-1.5.0-ibm-accessibility is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100807014" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.12.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130009" comment="java-1.5.0-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100807012" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.12.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130017" comment="java-1.5.0-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100807010" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.12.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130011" comment="java-1.5.0-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100807008" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.12.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130013" comment="java-1.5.0-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100807006" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.12.2-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100130015" comment="java-1.5.0-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100808" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0808: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0808-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0808.html" />
          <reference source="CVE" ref_id="CVE-2010-3765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3765.html" />
    
    <description>Mozilla Firefox is an open source web browser.

A race condition flaw was found in the way Firefox handled Document Object
Model (DOM) element properties. A web page containing malicious content
could cause Firefox to crash or, potentially, execute arbitrary code with
the privileges of the user running Firefox. (CVE-2010-3765)

For technical details regarding this flaw, refer to the Mozilla security
advisories for Firefox 3.6.12. You can find a link to the Mozilla
advisories in the References section of this erratum.

All Firefox users should upgrade to this updated package, which contains a
backported patch to correct this issue. After installing the update,
Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-27" />
        <updated date="2010-10-27" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3765.html">CVE-2010-3765</cve>
                <bugzilla href="http://bugzilla.redhat.com/646997" id="646997">CVE-2010-3765 Firefox race condition flaw (MFSA 2010-73)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100808002" comment="firefox is earlier than 0:3.6.11-4.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100809" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0809: xulrunner security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0809-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0809.html" />
          <reference source="CVE" ref_id="CVE-2010-3765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3765.html" />
    
    <description>XULRunner provides the XUL Runtime environment for applications using the
Gecko layout engine.

A race condition flaw was found in the way XULRunner handled Document
Object Model (DOM) element properties. Malicious HTML content could cause
an application linked against XULRunner (such as Firefox) to crash or,
potentially, execute arbitrary code with the privileges of the user running
the application. (CVE-2010-3765)

For technical details regarding this flaw, refer to the Mozilla security
advisories for Firefox 3.6.12. You can find a link to the Mozilla
advisories in the References section of this erratum.

All XULRunner users should upgrade to these updated packages, which contain
a backported patch to correct this issue. After installing the update,
applications using XULRunner must be restarted for the changes to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-27" />
        <updated date="2010-10-27" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3765.html">CVE-2010-3765</cve>
                <bugzilla href="http://bugzilla.redhat.com/646997" id="646997">CVE-2010-3765 Firefox race condition flaw (MFSA 2010-73)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100809002" comment="xulrunner is earlier than 0:1.9.2.11-4.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100809004" comment="xulrunner-devel is earlier than 0:1.9.2.11-4.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100810" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0810: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0810-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0810.html" />
          <reference source="CVE" ref_id="CVE-2010-3765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3765.html" />
    
    <description>SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.

A race condition flaw was found in the way SeaMonkey handled Document
Object Model (DOM) element properties. A web page containing malicious
content could cause SeaMonkey to crash or, potentially, execute arbitrary
code with the privileges of the user running SeaMonkey. (CVE-2010-3765)

All SeaMonkey users should upgrade to these updated packages, which correct
this issue. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-27" />
        <updated date="2010-10-27" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3765.html">CVE-2010-3765</cve>
                <bugzilla href="http://bugzilla.redhat.com/646997" id="646997">CVE-2010-3765 Firefox race condition flaw (MFSA 2010-73)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810010" comment="seamonkey-nspr is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113013" comment="seamonkey-nspr is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810014" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810012" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113019" comment="seamonkey-nspr-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810008" comment="seamonkey-mail is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810002" comment="seamonkey is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810004" comment="seamonkey-devel is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810020" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113011" comment="seamonkey-nss-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810018" comment="seamonkey-chat is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810016" comment="seamonkey-nss is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113005" comment="seamonkey-nss is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810006" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.62.el3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810028" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-65.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810025" comment="seamonkey-mail is earlier than 0:1.0.9-65.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810023" comment="seamonkey is earlier than 0:1.0.9-65.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810027" comment="seamonkey-devel is earlier than 0:1.0.9-65.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810026" comment="seamonkey-chat is earlier than 0:1.0.9-65.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100810024" comment="seamonkey-js-debugger is earlier than 0:1.0.9-65.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100811" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0811: cups security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0811-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0811.html" />
          <reference source="CVE" ref_id="CVE-2010-2431" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2431.html" />
          <reference source="CVE" ref_id="CVE-2010-2941" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2941.html" />
    
    <description>The Common UNIX Printing System (CUPS) provides a portable printing layer
for UNIX operating systems.

A use-after-free flaw was found in the way the CUPS server parsed Internet
Printing Protocol (IPP) packets. A malicious user able to send IPP requests
to the CUPS server could use this flaw to crash the CUPS server or,
potentially, execute arbitrary code with the privileges of the CUPS server.
(CVE-2010-2941)

A possible privilege escalation flaw was found in CUPS. An unprivileged
process running as the "lp" user (such as a compromised external filter
program spawned by the CUPS server) could trick the CUPS server into
overwriting arbitrary files as the root user. (CVE-2010-2431)

Red Hat would like to thank Emmanuel Bouillon of NATO C3 Agency for
reporting the CVE-2010-2941 issue.

Users of cups are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. After installing this
update, the cupsd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-28" />
        <updated date="2010-10-28" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2431.html">CVE-2010-2431</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2941.html">CVE-2010-2941</cve>
                <bugzilla href="http://bugzilla.redhat.com/605397" id="605397">CVE-2010-2431 cups: latent privilege escalation vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/624438" id="624438">CVE-2010-2941 cups: cupsd memory corruption vulnerability</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100811008" comment="cups-lpd is earlier than 1:1.3.7-18.el5_5.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129005" comment="cups-lpd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100811004" comment="cups-devel is earlier than 1:1.3.7-18.el5_5.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129007" comment="cups-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100811006" comment="cups-libs is earlier than 1:1.3.7-18.el5_5.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129009" comment="cups-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100811002" comment="cups is earlier than 1:1.3.7-18.el5_5.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100129003" comment="cups is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100812" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0812: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0812-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0812.html" />
          <reference source="CVE" ref_id="CVE-2010-3765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3765.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

A race condition flaw was found in the way Thunderbird handled Document
Object Model (DOM) element properties. An HTML mail message containing
malicious content could cause Thunderbird to crash or, potentially, execute
arbitrary code with the privileges of the user running Thunderbird.
(CVE-2010-3765)

Note: JavaScript support is disabled by default in Thunderbird. The
CVE-2010-3765 issue is not exploitable unless JavaScript is enabled.

All Thunderbird users should upgrade to this updated package, which
resolves this issue. All running instances of Thunderbird must be restarted
for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-10-28" />
        <updated date="2010-10-28" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3765.html">CVE-2010-3765</cve>
                <bugzilla href="http://bugzilla.redhat.com/646997" id="646997">CVE-2010-3765 Firefox race condition flaw (MFSA 2010-73)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100812002" comment="thunderbird is earlier than 0:2.0.0.24-10.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100153003" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100812005" comment="thunderbird is earlier than 0:1.5.0.12-33.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100154003" comment="thunderbird is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100817" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0817: Red Hat Enterprise Linux 3 - End Of Life (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 3</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0817-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0817.html" />
    
    <description>In accordance with the Red Hat Enterprise Linux Errata Support Policy, the
regular 7 year life-cycle of Red Hat Enterprise Linux 3 has ended.

Red Hat has discontinued the regular subscription services for Red Hat
Enterprise Linux 3. Therefore, new bug fix, enhancement, and security
errata updates, as well as technical support services are no longer
available for the following products:

* Red Hat Enterprise Linux AS 3
* Red Hat Enterprise Linux ES 3
* Red Hat Enterprise Linux WS 3
* Red Hat Enterprise Linux Extras 3
* Red Hat Desktop 3
* Red Hat Global File System 3
* Red Hat Cluster Suite 3

Servers subscribed to Red Hat Enterprise Linux 3 channels on the Red Hat
Network will shortly become unsubscribed. As a benefit of the Red Hat
subscription model, those subscriptions can be used to entitle any system
on any currently supported release of Red Hat Enterprise Linux.

Red Hat Enterprise Linux Subscriptions are version-independent and allow
access to all major releases of Red Hat Enterprise Linux, that are
currently supported within their regular 7-year life-cycle. Therefore
customers retain access to Red Hat Enterprise Linux 4, 5 and soon to be
released 6. There are no additional upgrade fees when moving from Red Hat
Enterprise Linux 3 to any of these newer releases.

For customers who are unable to migrate off Red Hat Enterprise Linux 3, Red
Hat is offering a limited, optional extension program referred to as RHEL 3
Extended Life Cycle Support (ELS). For more information, contact your Red
Hat sales representative or channel partner on this program. Additionally
you can find more information on this program here:
http://www.redhat.com/rhel/server/extended_lifecycle_support/

Once you are eligible for subscribing to the RHEL 3 ELS channels, read the
Red Hat Knowledgebase article DOC-40489 at
https://access.redhat.com/kb/docs/DOC-40489 for detailed information on how
to subscribe to the RHEL 3 ELS channels.

Details of the Red Hat Enterprise Linux life-cycle can be found on the Red
Hat website: http://www.redhat.com/security/updates/errata/</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-01" />
        <updated date="2010-11-01" />
                <bugzilla href="http://bugzilla.redhat.com/644878" id="644878">Send Out RHEL 3 final EOL Notice</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100029012" comment="Red Hat Enterprise Linux 3 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100817002" comment="redhat-release is earlier than 0:3AS-13.9.11" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100817004" comment="redhat-release is earlier than 0:3ES-13.9.11" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100817005" comment="redhat-release is earlier than 0:3Desktop-13.9.11" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100817006" comment="redhat-release is earlier than 0:3WS-13.9.11" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100386003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100819" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0819: pam security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0819-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0819.html" />
          <reference source="CVE" ref_id="CVE-2010-3316" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3316.html" />
          <reference source="CVE" ref_id="CVE-2010-3435" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3435.html" />
          <reference source="CVE" ref_id="CVE-2010-3853" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3853.html" />
          <reference source="CVE" ref_id="CVE-2010-4707" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4707.html" />
    
    <description>Pluggable Authentication Modules (PAM) provide a system whereby
administrators can set up authentication policies without having to
recompile programs that handle authentication.

It was discovered that the pam_namespace module executed the external
script namespace.init with an unchanged environment inherited from an
application calling PAM. In cases where such an environment was untrusted
(for example, when pam_namespace was configured for setuid applications
such as su or sudo), a local, unprivileged user could possibly use this
flaw to escalate their privileges. (CVE-2010-3853)

It was discovered that the pam_mail module used root privileges while
accessing users' files. In certain configurations, a local, unprivileged
user could use this flaw to obtain limited information about files or
directories that they do not have access to. (CVE-2010-3435)

It was discovered that the pam_xauth module did not verify the return
values of the setuid() and setgid() system calls. A local, unprivileged
user could use this flaw to execute the xauth command with root privileges
and make it read an arbitrary input file. (CVE-2010-3316)

Red Hat would like to thank Sebastian Krahmer of the SuSE Security Team for
reporting the CVE-2010-3435 issue.

All pam users should upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-01" />
        <updated date="2010-11-01" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3316.html">CVE-2010-3316</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3435.html">CVE-2010-3435</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3853.html">CVE-2010-3853</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4707.html">CVE-2010-4707</cve>
                <bugzilla href="http://bugzilla.redhat.com/637898" id="637898">CVE-2010-3316 pam: pam_xauth missing return value checks from setuid() and similar calls</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641335" id="641335">CVE-2010-3435 pam: pam_env and pam_mail accessing users' file with root privileges</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/643043" id="643043">CVE-2010-3853 pam: pam_namespace executes namespace.init with service's environment</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100819004" comment="pam-devel is earlier than 0:0.99.6.2-6.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100819005" comment="pam-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100819002" comment="pam is earlier than 0:0.99.6.2-6.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100819003" comment="pam is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100824" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0824: mysql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0824-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0824.html" />
          <reference source="CVE" ref_id="CVE-2010-1848" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1848.html" />
          <reference source="CVE" ref_id="CVE-2010-3681" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3681.html" />
          <reference source="CVE" ref_id="CVE-2010-3840" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3840.html" />
    
    <description>MySQL is a multi-user, multi-threaded SQL database server. It consists of
the MySQL server daemon (mysqld) and many client programs and libraries.

It was found that the MySQL PolyFromWKB() function did not sanity check
Well-Known Binary (WKB) data. A remote, authenticated attacker could use
specially-crafted WKB data to crash mysqld. This issue only caused a
temporary denial of service, as mysqld was automatically restarted after
the crash. (CVE-2010-3840)

A flaw was found in the way MySQL processed certain alternating READ
requests provided by HANDLER statements. A remote, authenticated attacker
could use this flaw to provide such requests, causing mysqld to crash. This
issue only caused a temporary denial of service, as mysqld was
automatically restarted after the crash. (CVE-2010-3681)

A directory traversal flaw was found in the way MySQL handled the
parameters of the MySQL COM_FIELD_LIST network protocol command. A remote,
authenticated attacker could use this flaw to obtain descriptions of the
fields of an arbitrary table using a request with a specially-crafted
table name. (CVE-2010-1848)

All MySQL users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. After installing this
update, the MySQL server daemon (mysqld) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-03" />
        <updated date="2010-11-03" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1848.html">CVE-2010-1848</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3681.html">CVE-2010-3681</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3840.html">CVE-2010-3840</cve>
                <bugzilla href="http://bugzilla.redhat.com/592079" id="592079">CVE-2010-1848 mysql: multiple insufficient table name checks</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/628680" id="628680">CVE-2010-3681 MySQL: mysqld DoS (assertion failure) by alternate reads from two indexes on a table using the HANDLER interface (MySQL bug #54007)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640865" id="640865">CVE-2010-3840 MySQL: crash when loading data into geometry function PolyFromWKB() (MySQL Bug#51875)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100824002" comment="mysql is earlier than 0:4.1.22-2.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100110003" comment="mysql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100824004" comment="mysql-server is earlier than 0:4.1.22-2.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100110005" comment="mysql-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100824008" comment="mysql-bench is earlier than 0:4.1.22-2.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100110009" comment="mysql-bench is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100824006" comment="mysql-devel is earlier than 0:4.1.22-2.el4_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100110007" comment="mysql-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100825" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0825: mysql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0825-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0825.html" />
          <reference source="CVE" ref_id="CVE-2010-3677" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3677.html" />
          <reference source="CVE" ref_id="CVE-2010-3680" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3680.html" />
          <reference source="CVE" ref_id="CVE-2010-3681" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3681.html" />
          <reference source="CVE" ref_id="CVE-2010-3682" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3682.html" />
          <reference source="CVE" ref_id="CVE-2010-3833" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3833.html" />
          <reference source="CVE" ref_id="CVE-2010-3835" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3835.html" />
          <reference source="CVE" ref_id="CVE-2010-3836" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3836.html" />
          <reference source="CVE" ref_id="CVE-2010-3837" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3837.html" />
          <reference source="CVE" ref_id="CVE-2010-3838" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3838.html" />
          <reference source="CVE" ref_id="CVE-2010-3839" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3839.html" />
          <reference source="CVE" ref_id="CVE-2010-3840" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3840.html" />
    
    <description>MySQL is a multi-user, multi-threaded SQL database server. It consists of
the MySQL server daemon (mysqld) and many client programs and libraries.

It was found that the MySQL PolyFromWKB() function did not sanity check
Well-Known Binary (WKB) data. A remote, authenticated attacker could use
specially-crafted WKB data to crash mysqld. This issue only caused a
temporary denial of service, as mysqld was automatically restarted after
the crash. (CVE-2010-3840)

A flaw was found in the way MySQL processed certain JOIN queries. If a
stored procedure contained JOIN queries, and that procedure was executed
twice in sequence, it could cause an infinite loop, leading to excessive
CPU use (up to 100%). A remote, authenticated attacker could use this flaw
to cause a denial of service. (CVE-2010-3839)

A flaw was found in the way MySQL processed queries that provide a mixture
of numeric and longblob data types to the LEAST or GREATEST function. A
remote, authenticated attacker could use this flaw to crash mysqld. This
issue only caused a temporary denial of service, as mysqld was
automatically restarted after the crash. (CVE-2010-3838)

A flaw was found in the way MySQL processed PREPARE statements containing
both GROUP_CONCAT and the WITH ROLLUP modifier. A remote, authenticated
attacker could use this flaw to crash mysqld. This issue only caused a
temporary denial of service, as mysqld was automatically restarted after
the crash. (CVE-2010-3837)

It was found that MySQL did not properly pre-evaluate LIKE arguments in
view prepare mode. A remote, authenticated attacker could possibly use this
flaw to crash mysqld. (CVE-2010-3836)

A flaw was found in the way MySQL processed statements that assign a value
to a user-defined variable and that also contain a logical value
evaluation. A remote, authenticated attacker could use this flaw to crash
mysqld. This issue only caused a temporary denial of service, as mysqld was
automatically restarted after the crash. (CVE-2010-3835)

A flaw was found in the way MySQL evaluated the arguments of extreme-value
functions, such as LEAST and GREATEST. A remote, authenticated attacker
could use this flaw to crash mysqld. This issue only caused a temporary
denial of service, as mysqld was automatically restarted after the crash.
(CVE-2010-3833)

A flaw was found in the way MySQL processed EXPLAIN statements for some
complex SELECT queries. A remote, authenticated attacker could use this
flaw to crash mysqld. This issue only caused a temporary denial of service,
as mysqld was automatically restarted after the crash. (CVE-2010-3682)

A flaw was found in the way MySQL processed certain alternating READ
requests provided by HANDLER statements. A remote, authenticated attacker
could use this flaw to provide such requests, causing mysqld to crash. This
issue only caused a temporary denial of service, as mysqld was
automatically restarted after the crash. (CVE-2010-3681)

A flaw was found in the way MySQL processed CREATE TEMPORARY TABLE
statements that define NULL columns when using the InnoDB storage engine. A
remote, authenticated attacker could use this flaw to crash mysqld. This
issue only caused a temporary denial of service, as mysqld was
automatically restarted after the crash. (CVE-2010-3680)

A flaw was found in the way MySQL processed JOIN queries that attempt to
retrieve data from a unique SET column. A remote, authenticated attacker
could use this flaw to crash mysqld. This issue only caused a temporary
denial of service, as mysqld was automatically restarted after the crash.
(CVE-2010-3677)

All MySQL users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. After installing this
update, the MySQL server daemon (mysqld) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-03" />
        <updated date="2010-11-03" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3677.html">CVE-2010-3677</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3680.html">CVE-2010-3680</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3681.html">CVE-2010-3681</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3682.html">CVE-2010-3682</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3833.html">CVE-2010-3833</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3835.html">CVE-2010-3835</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3836.html">CVE-2010-3836</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3837.html">CVE-2010-3837</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3838.html">CVE-2010-3838</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3839.html">CVE-2010-3839</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3840.html">CVE-2010-3840</cve>
                <bugzilla href="http://bugzilla.redhat.com/628040" id="628040">CVE-2010-3677 MySQL: Mysqld DoS (crash) by processing joins involving a table with a unique SET column (MySQL BZ#54575)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/628192" id="628192">CVE-2010-3680 MySQL: mysqld DoS (assertion failure) by using temporary InnoDB engine tables with nullable columns (MySQL bug #54044)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/628328" id="628328">CVE-2010-3682 MySQL: mysqld DoS (crash) by processing EXPLAIN statements for complex SQL queries (MySQL bug #52711)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/628680" id="628680">CVE-2010-3681 MySQL: mysqld DoS (assertion failure) by alternate reads from two indexes on a table using the HANDLER interface (MySQL bug #54007)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640751" id="640751">CVE-2010-3833 MySQL: CREATE TABLE ... SELECT causes crash when KILL_BAD_DATA is returned (MySQL Bug#55826)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640819" id="640819">CVE-2010-3835 MySQL: crash with user variables, assignments, joins... (MySQL Bug #55564)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640845" id="640845">CVE-2010-3836 MySQL: pre-evaluating LIKE arguments in view prepare mode causes crash (MySQL Bug#54568)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640856" id="640856">CVE-2010-3837 MySQL: crash when group_concat and "with rollup" in prepared statements (MySQL Bug#54476)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640858" id="640858">CVE-2010-3838 MySQL: crash with LONGBLOB and union or update with subquery (MySQL Bug#54461)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640861" id="640861">CVE-2010-3839 MySQL: server hangs during JOIN query in stored procedures called twice in a row (MySQL Bug#53544)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640865" id="640865">CVE-2010-3840 MySQL: crash when loading data into geometry function PolyFromWKB() (MySQL Bug#51875)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100825006" comment="mysql-test is earlier than 0:5.0.77-4.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109009" comment="mysql-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100825002" comment="mysql is earlier than 0:5.0.77-4.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109003" comment="mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100825010" comment="mysql-server is earlier than 0:5.0.77-4.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109011" comment="mysql-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100825008" comment="mysql-bench is earlier than 0:5.0.77-4.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109005" comment="mysql-bench is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100825004" comment="mysql-devel is earlier than 0:5.0.77-4.el5_5.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100109007" comment="mysql-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100829" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0829: flash-plugin security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0829-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0829.html" />
          <reference source="CVE" ref_id="CVE-2010-3636" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3636.html" />
          <reference source="CVE" ref_id="CVE-2010-3639" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3639.html" />
          <reference source="CVE" ref_id="CVE-2010-3640" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3640.html" />
          <reference source="CVE" ref_id="CVE-2010-3641" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3641.html" />
          <reference source="CVE" ref_id="CVE-2010-3642" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3642.html" />
          <reference source="CVE" ref_id="CVE-2010-3643" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3643.html" />
          <reference source="CVE" ref_id="CVE-2010-3644" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3644.html" />
          <reference source="CVE" ref_id="CVE-2010-3645" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3645.html" />
          <reference source="CVE" ref_id="CVE-2010-3646" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3646.html" />
          <reference source="CVE" ref_id="CVE-2010-3647" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3647.html" />
          <reference source="CVE" ref_id="CVE-2010-3648" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3648.html" />
          <reference source="CVE" ref_id="CVE-2010-3649" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3649.html" />
          <reference source="CVE" ref_id="CVE-2010-3650" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3650.html" />
          <reference source="CVE" ref_id="CVE-2010-3652" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3652.html" />
          <reference source="CVE" ref_id="CVE-2010-3654" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3654.html" />
    
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes multiple vulnerabilities in Adobe Flash Player. These
vulnerabilities are detailed on the Adobe security page APSB10-26, listed
in the References section.

Multiple security flaws were found in the way flash-plugin displayed
certain SWF content. An attacker could use these flaws to create a
specially-crafted SWF file that would cause flash-plugin to crash or,
potentially, execute arbitrary code when the victim loaded a page
containing the specially-crafted SWF content. (CVE-2010-3639,
CVE-2010-3640, CVE-2010-3641, CVE-2010-3642, CVE-2010-3643, CVE-2010-3644,
CVE-2010-3645, CVE-2010-3646, CVE-2010-3647, CVE-2010-3648, CVE-2010-3649,
CVE-2010-3650, CVE-2010-3652, CVE-2010-3654)

An input validation flaw was discovered in flash-plugin. Certain server
encodings could lead to a bypass of cross-domain policy file restrictions,
possibly leading to cross-domain information disclosure. (CVE-2010-3636)

During testing, it was discovered that there were regressions with Flash
Player on certain sites, such as fullscreen playback on YouTube.  Despite
these regressions, we feel these security flaws are serious enough to
update the package with what Adobe has provided.

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.1.102.64.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-05" />
        <updated date="2010-11-05" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3636.html">CVE-2010-3636</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3639.html">CVE-2010-3639</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3640.html">CVE-2010-3640</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3641.html">CVE-2010-3641</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3642.html">CVE-2010-3642</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3643.html">CVE-2010-3643</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3644.html">CVE-2010-3644</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3645.html">CVE-2010-3645</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3646.html">CVE-2010-3646</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3647.html">CVE-2010-3647</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3648.html">CVE-2010-3648</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3649.html">CVE-2010-3649</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3650.html">CVE-2010-3650</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3652.html">CVE-2010-3652</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3654.html">CVE-2010-3654</cve>
                <bugzilla href="http://bugzilla.redhat.com/647525" id="647525">CVE-2010-3654 acroread/flash-plugin: critical vulnerablility (APSA10-05, APSB10-26)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/649938" id="649938">flash-plugin: security bulletin APSB10-26</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100829002" comment="flash-plugin is earlier than 0:10.1.102.64-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100102003" comment="flash-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100839" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0839: kernel security and bug fix update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0839-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0839.html" />
          <reference source="CVE" ref_id="CVE-2010-3066" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3066.html" />
          <reference source="CVE" ref_id="CVE-2010-3067" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3067.html" />
          <reference source="CVE" ref_id="CVE-2010-3078" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3078.html" />
          <reference source="CVE" ref_id="CVE-2010-3086" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3086.html" />
          <reference source="CVE" ref_id="CVE-2010-3448" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3448.html" />
          <reference source="CVE" ref_id="CVE-2010-3477" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3477.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* A NULL pointer dereference flaw was found in the io_submit_one() function
in the Linux kernel asynchronous I/O implementation. A local, unprivileged
user could use this flaw to cause a denial of service. (CVE-2010-3066,
Moderate)

* A flaw was found in the xfs_ioc_fsgetxattr() function in the Linux kernel
XFS file system implementation. A data structure in xfs_ioc_fsgetxattr()
was not initialized properly before being copied to user-space. A local,
unprivileged user could use this flaw to cause an information leak.
(CVE-2010-3078, Moderate)

* The exception fixup code for the __futex_atomic_op1, __futex_atomic_op2,
and futex_atomic_cmpxchg_inatomic() macros replaced the LOCK prefix with a
NOP instruction. A local, unprivileged user could use this flaw to cause a
denial of service. (CVE-2010-3086, Moderate)

* A flaw was found in the tcf_act_police_dump() function in the Linux
kernel network traffic policing implementation. A data structure in
tcf_act_police_dump() was not initialized properly before being copied to
user-space. A local, unprivileged user could use this flaw to cause an
information leak. (CVE-2010-3477, Moderate)

* A missing upper bound integer check was found in the sys_io_submit()
function in the Linux kernel asynchronous I/O implementation. A local,
unprivileged user could use this flaw to cause an information leak.
(CVE-2010-3067, Low)

Red Hat would like to thank Tavis Ormandy for reporting CVE-2010-3066,
CVE-2010-3086, and CVE-2010-3067, and Dan Rosenberg for reporting
CVE-2010-3078.

This update also fixes several bugs. Documentation for these bug fixes will
be available shortly from the Technical Notes document linked to in the
References section.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-09" />
        <updated date="2010-11-09" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3066.html">CVE-2010-3066</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3067.html">CVE-2010-3067</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3078.html">CVE-2010-3078</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3086.html">CVE-2010-3086</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3448.html">CVE-2010-3448</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3477.html">CVE-2010-3477</cve>
                <bugzilla href="http://bugzilla.redhat.com/619365" id="619365">[LSI 5.6 feat] update megaraid_sas to version 4.31 [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/628889" id="628889">[NetApp 5.6 bug] RHEL NFS clients disconnected from NetApp NFSv4 shares with: v4 server returned a bad sequence-id error! [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/629241" id="629241">CVE-2010-3448 kernel: thinkpad-acpi: lock down video output state access [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/629441" id="629441">CVE-2010-3067 kernel: do_io_submit() infoleak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/629861" id="629861">Reserve PNP enumerated system board iomem resources [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630540" id="630540">[RHEL5.5] soft lockup on vlan with bonding in balance-alb mode [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630804" id="630804">CVE-2010-3078 kernel: xfs: XFS_IOC_FSGETXATTR ioctl memory leak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/630989" id="630989">HVM guest w/ UP and PV driver hangs after live migration or suspend/resume [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/631716" id="631716">CVE-2010-3066 kernel: io_submit_one() NULL ptr deref</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/632255" id="632255">RHEVH - Vdsm - Storage: lvextend fails during VMs intensive power up [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/633170" id="633170">CVE-2010-3086 kernel panic via futex</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/634976" id="634976">icmpmsg_put() in kernel writes beyond array bounds, leading to junk in /proc/net/snmp and memory corruption [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/634977" id="634977">Spinning up disk for device on standby path causing long boot up [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/636386" id="636386">CVE-2010-3477 kernel: net/sched/act_police.c infoleak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637069" id="637069">time drift with VXTIME_PMTMR mode in case of early / short real ticks [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637206" id="637206">system crashes due to corrupt net_device_wrapper structure [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637220" id="637220">[RHEL5 IA64 XEN] netfront driver: alloc_dev: Private data too big. [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637727" id="637727">lpfc ioctl crash in lpfc_nlp_put() [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638579" id="638579">dasd: fix race between tasklet and dasd_sleep_on [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638866" id="638866">[5.5] a race in pid generation that causes pids to be reused immediately. [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639073" id="639073">GFS1 vs GFS2 performance issue [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640973" id="640973">Bonded interface doesn't issue IGMP report (join) on slave interface during failover [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641915" id="641915">backward time drift in RHEL4, 5, and 6 Xen HVM guests that use PM timer / bug in hypervisor routine pmt_update_time() [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642465" id="642465">CVE-2010-2963 kernel: v4l: VIDIOCSMICROCODE arbitrary write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642470" id="642470">CVE-2010-2963 kernel: v4l: VIDIOCSMICROCODE arbitrary write [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642628" id="642628">[5.6 FEAT] NFSv4 remove does not wait for close. Silly rename [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/643135" id="643135">[NetApp/QLogic 5.5.z bug] Kernel panic hit on RHEL 5.5 QLogic FC host at qla2x00_abort_fcport_cmds [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/643571" id="643571">[EMC 5.6 bug] severe fragmentation with xfs file system [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/643806" id="643806">Add OFED-1.5.2 patch to increase log_mtts_per_seg for 5.5z-stream [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/644822" id="644822">802.3ad link aggregation won't work with newer (2.6.194-8.1.el5) kernel and ixgbe driver [rhel-5.5.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/647601" id="647601">Direct IO write to a file on an nfs mount does not work [rhel-5.5.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839004" comment="kernel-headers is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839002" comment="kernel is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839024" comment="kernel-doc is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839022" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839012" comment="kernel-devel is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839006" comment="kernel-debug is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839018" comment="kernel-kdump is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019017" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839008" comment="kernel-xen-devel is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019009" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839014" comment="kernel-debug-devel is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019015" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839020" comment="kernel-PAE is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839016" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019019" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100839010" comment="kernel-xen is earlier than 0:2.6.18-194.26.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100019011" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100842" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0842: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0842-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0842.html" />
          <reference source="CVE" ref_id="CVE-2010-2803" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2803.html" />
          <reference source="CVE" ref_id="CVE-2010-2955" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2955.html" />
          <reference source="CVE" ref_id="CVE-2010-2962" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2962.html" />
          <reference source="CVE" ref_id="CVE-2010-3079" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3079.html" />
          <reference source="CVE" ref_id="CVE-2010-3081" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3081.html" />
          <reference source="CVE" ref_id="CVE-2010-3084" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3084.html" />
          <reference source="CVE" ref_id="CVE-2010-3301" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3301.html" />
          <reference source="CVE" ref_id="CVE-2010-3432" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3432.html" />
          <reference source="CVE" ref_id="CVE-2010-3437" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3437.html" />
          <reference source="CVE" ref_id="CVE-2010-3442" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3442.html" />
          <reference source="CVE" ref_id="CVE-2010-3698" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3698.html" />
          <reference source="CVE" ref_id="CVE-2010-3705" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3705.html" />
          <reference source="CVE" ref_id="CVE-2010-3904" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3904.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* Missing sanity checks in the Intel i915 driver in the Linux kernel could
allow a local, unprivileged user to escalate their privileges.
(CVE-2010-2962, Important)

* compat_alloc_user_space() in the Linux kernel 32/64-bit compatibility
layer implementation was missing sanity checks. This function could be
abused in other areas of the Linux kernel if its length argument can be
controlled from user-space. On 64-bit systems, a local, unprivileged user
could use this flaw to escalate their privileges. (CVE-2010-3081,
Important)

* A buffer overflow flaw in niu_get_ethtool_tcam_all() in the niu Ethernet
driver in the Linux kernel, could allow a local user to cause a denial of
service or escalate their privileges. (CVE-2010-3084, Important)

* A flaw in the IA32 system call emulation provided in 64-bit Linux kernels
could allow a local user to escalate their privileges. (CVE-2010-3301,
Important)

* A flaw in sctp_packet_config() in the Linux kernel's Stream Control
Transmission Protocol (SCTP) implementation could allow a remote attacker
to cause a denial of service. (CVE-2010-3432, Important)

* A missing integer overflow check in snd_ctl_new() in the Linux kernel's
sound subsystem could allow a local, unprivileged user on a 32-bit system
to cause a denial of service or escalate their privileges. (CVE-2010-3442,
Important)

* A flaw was found in sctp_auth_asoc_get_hmac() in the Linux kernel's SCTP
implementation. When iterating through the hmac_ids array, it did not reset
the last id element if it was out of range. This could allow a remote
attacker to cause a denial of service. (CVE-2010-3705, Important)

* A function in the Linux kernel's Reliable Datagram Sockets (RDS) protocol
implementation was missing sanity checks, which could allow a local,
unprivileged user to escalate their privileges. (CVE-2010-3904, Important)

* A flaw in drm_ioctl() in the Linux kernel's Direct Rendering Manager
(DRM) implementation could allow a local, unprivileged user to cause an
information leak. (CVE-2010-2803, Moderate)

* It was found that wireless drivers might not always clear allocated
buffers when handling a driver-specific IOCTL information request. A local
user could trigger this flaw to cause an information leak. (CVE-2010-2955,
Moderate)

* A NULL pointer dereference flaw in ftrace_regex_lseek() in the Linux
kernel's ftrace implementation could allow a local, unprivileged user to
cause a denial of service. Note: The debugfs file system must be mounted
locally to exploit this issue. It is not mounted by default.
(CVE-2010-3079, Moderate)

* A flaw in the Linux kernel's packet writing driver could be triggered
via the PKT_CTRL_CMD_STATUS IOCTL request, possibly allowing a local,
unprivileged user with access to "/dev/pktcdvd/control" to cause an
information leak. Note: By default, only users in the cdrom group have
access to "/dev/pktcdvd/control". (CVE-2010-3437, Moderate)

* A flaw was found in the way KVM (Kernel-based Virtual Machine) handled
the reloading of fs and gs segment registers when they had invalid
selectors. A privileged host user with access to "/dev/kvm" could use this
flaw to crash the host. (CVE-2010-3698, Moderate)

Red Hat would like to thank Kees Cook for reporting CVE-2010-2962 and
CVE-2010-2803; Ben Hawkes for reporting CVE-2010-3081 and CVE-2010-3301;
Dan Rosenberg for reporting CVE-2010-3442, CVE-2010-3705, CVE-2010-3904,
and CVE-2010-3437; and Robert Swiecki for reporting CVE-2010-3079.

This update also fixes several bugs. Documentation for these bug fixes will
be available shortly from the Technical Notes document linked to in the
References section.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-22" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2803.html">CVE-2010-2803</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2955.html">CVE-2010-2955</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2962.html">CVE-2010-2962</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3079.html">CVE-2010-3079</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3081.html">CVE-2010-3081</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3084.html">CVE-2010-3084</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3301.html">CVE-2010-3301</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3432.html">CVE-2010-3432</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3437.html">CVE-2010-3437</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3442.html">CVE-2010-3442</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3698.html">CVE-2010-3698</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3705.html">CVE-2010-3705</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3904.html">CVE-2010-3904</cve>
                <bugzilla href="http://bugzilla.redhat.com/621435" id="621435">CVE-2010-2803 kernel: drm ioctls infoleak</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/628434" id="628434">CVE-2010-2955 kernel: wireless: fix 64K kernel heap content leak via ioctl</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/631623" id="631623">CVE-2010-3079 kernel: ftrace NULL ptr deref</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/632069" id="632069">CVE-2010-3084 kernel: niu: buffer overflow for ETHTOOL_GRXCLSRLALL</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/632292" id="632292">RHEL55.x32 crashes when installing under RHEL6 KVM on an AMD host [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/633864" id="633864">block: fix s390 tape block driver crash that occurs when it switches the IO scheduler [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/633865" id="633865">[FIPS140][RHEL6] kernel module should failed to load if DSA signature check fails when FIPS mode is on [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/633964" id="633964">RHEL-UV: kernel panic on boot uvsw-sys [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/633966" id="633966">winxp BSOD when boot with cpu mode name [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/634449" id="634449">CVE-2010-3301 kernel: IA32 System Call Entry Point Vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/634457" id="634457">CVE-2010-3081 kernel: 64-bit Compatibility Mode Stack Pointer Underflow</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/634973" id="634973">Detect and recover from cxgb3 adapter parity errors [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/634984" id="634984">RHEL6 can NOT boot(displays nothing) on boards with RS880 [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/635951" id="635951">kernel-kdump-debuginfo rpm does not contain debug symbols for s390 [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/636116" id="636116">MADV_HUGEPAGE undeclared [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637087" id="637087">Kernel Memory dump to a FCP device fails with panic [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637675" id="637675">CVE-2010-3432 kernel: sctp: do not reset the packet during sctp_packet_config</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637688" id="637688">CVE-2010-2962 kernel: arbitrary kernel memory write via i915 GEM ioctl</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638085" id="638085">CVE-2010-3437 kernel: pktcdvd ioctl dev_minor missing range check</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638478" id="638478">CVE-2010-3442 kernel: prevent heap corruption in snd_ctl_new()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638973" id="638973">[RHEL6 Snapshot 13]: The boot parameters 'nomodeset xforcevesa' is needed to install on Precision M4500 [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639412" id="639412">block: must prevent merges of discard and write requests [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639879" id="639879">CVE-2010-3698 kvm: invalid selector in fs/gs causes kernel panic</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640036" id="640036">CVE-2010-3705 kernel: sctp memory corruption in HMAC handling</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641258" id="641258">fix split_huge_page error like mapcount 3 page_mapcount 2 [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641454" id="641454">Output 'JBD: spotted dirty metadata buffer' message when usrquota is enabled [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641455" id="641455">[Intel 6.0 Bug] NPIV broken in SW FCoE [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641456" id="641456">[Intel 6.1 Bug] FCoE Boot ROM, unable to see LUN during system install thru NPV [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641457" id="641457">FCoE: Do not fall back to non-FIP FLOGI [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641458" id="641458">vmstat incorrectly reports disk IO as swap in [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641459" id="641459">Don't lose dirty bits leading to data corruption during KSM swapping [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641460" id="641460">KSM: fix page_address_in_vma anon_vma oops [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641483" id="641483">Stack size mapping is decreased through mlock/munlock call [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641907" id="641907">lpfc driver oops during rhel6 installation with snapshot 12/13 and emulex FC [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642043" id="642043">slow memory leak in i915 module on all intel hw [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642045" id="642045">major memory leak in radeon driver due when scrolling certain sites in firefox [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642465" id="642465">CVE-2010-2963 kernel: v4l: VIDIOCSMICROCODE arbitrary write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642679" id="642679">kernel BUG at mm/huge_memory.c:1279! [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642680" id="642680">XFS: accounting of reclaimable inodes is incorrect [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642896" id="642896">CVE-2010-3904 kernel: RDS sockets local privilege escalation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/644037" id="644037">kernel BUG at mm/huge_memory.c:1267! - mapcount 5 page_mapcount 4 [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/644038" id="644038">avoid crashes: backport hold mm->page_table_lock patch [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/644636" id="644636">kernel wastes huge amounts of memory due to CONFIG_IMA [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/644926" id="644926">calling elevator_change immediately after blk_init_queue results in a null pointer dereference [rhel-6.0.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/646994" id="646994">Booting AMD Dinar system results in softlockups in ttm code [rhel-6.0.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842025" comment="kernel-firmware is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842026" comment="kernel-firmware is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842007" comment="kernel-headers is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842008" comment="kernel-headers is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842005" comment="kernel is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842006" comment="kernel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842023" comment="kernel-doc is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842024" comment="kernel-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842015" comment="kernel-devel is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842016" comment="kernel-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842021" comment="perf is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842022" comment="perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842011" comment="kernel-debug is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842012" comment="kernel-debug is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842017" comment="kernel-kdump is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842018" comment="kernel-kdump is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842013" comment="kernel-debug-devel is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842014" comment="kernel-debug-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842019" comment="kernel-kdump-devel is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842020" comment="kernel-kdump-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842009" comment="kernel-bootwrapper is earlier than 0:2.6.32-71.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842010" comment="kernel-bootwrapper is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100858" version="504" class="patch">
      <metadata>
        <title>RHSA-2010:0858: bzip2 security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0858-03" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0858.html" />
          <reference source="CVE" ref_id="CVE-2010-0405" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0405.html" />
    
    <description>bzip2 is a freely available, high-quality data compressor. It provides both
standalone compression and decompression utilities, as well as a shared
library for use with other programs.

An integer overflow flaw was discovered in the bzip2 decompression routine.
This issue could, when decompressing malformed archives, cause bzip2, or an
application linked against the libbz2 library, to crash or, potentially,
execute arbitrary code. (CVE-2010-0405)

Users of bzip2 should upgrade to these updated packages, which contain a
backported patch to resolve this issue. All running applications using the
libbz2 library must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0405.html">CVE-2010-0405</cve>
                <bugzilla href="http://bugzilla.redhat.com/627882" id="627882">CVE-2010-0405 bzip2: integer overflow flaw in BZ2_decompress</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100858007" comment="bzip2-devel is earlier than 0:1.0.5-7.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100858008" comment="bzip2-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100858009" comment="bzip2-libs is earlier than 0:1.0.5-7.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100858010" comment="bzip2-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100858005" comment="bzip2 is earlier than 0:1.0.5-7.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100858006" comment="bzip2 is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100859" version="504" class="patch">
      <metadata>
        <title>RHSA-2010:0859: poppler security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0859-03" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0859.html" />
          <reference source="CVE" ref_id="CVE-2010-3702" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3702.html" />
          <reference source="CVE" ref_id="CVE-2010-3703" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3703.html" />
          <reference source="CVE" ref_id="CVE-2010-3704" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3704.html" />
    
    <description>Poppler is a Portable Document Format (PDF) rendering library, used by
applications such as Evince.

Two uninitialized pointer use flaws were discovered in poppler. An attacker
could create a malicious PDF file that, when opened, would cause
applications that use poppler (such as Evince) to crash or, potentially,
execute arbitrary code. (CVE-2010-3702, CVE-2010-3703)

An array index error was found in the way poppler parsed PostScript Type 1
fonts embedded in PDF documents. An attacker could create a malicious PDF
file that, when opened, would cause applications that use poppler (such as
Evince) to crash or, potentially, execute arbitrary code. (CVE-2010-3704)

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3702.html">CVE-2010-3702</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3703.html">CVE-2010-3703</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3704.html">CVE-2010-3704</cve>
                <bugzilla href="http://bugzilla.redhat.com/595245" id="595245">CVE-2010-3702 xpdf: uninitialized Gfx::parser pointer dereference</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638960" id="638960">CVE-2010-3704 xpdf: array indexing error in FoFiType1::parse()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639356" id="639356">CVE-2010-3703 poppler: use of initialized pointer in PostScriptFunction</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859019" comment="poppler-glib-devel is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859020" comment="poppler-glib-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859017" comment="poppler-qt is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859018" comment="poppler-qt is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859009" comment="poppler-utils is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859010" comment="poppler-utils is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859007" comment="poppler-qt4-devel is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859008" comment="poppler-qt4-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859015" comment="poppler-glib is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859016" comment="poppler-glib is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859021" comment="poppler-qt4 is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859022" comment="poppler-qt4 is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859005" comment="poppler is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859006" comment="poppler is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859013" comment="poppler-devel is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859014" comment="poppler-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100859011" comment="poppler-qt-devel is earlier than 0:0.12.4-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100859012" comment="poppler-qt-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100860" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0860: samba security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0860-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0860.html" />
          <reference source="CVE" ref_id="CVE-2010-3069" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3069.html" />
    
    <description>Samba is a suite of programs used by machines to share files, printers, and
other information.

A missing array boundary checking flaw was found in the way Samba parsed
the binary representation of Windows security identifiers (SIDs). A
malicious client could send a specially-crafted SMB request to the Samba
server, resulting in arbitrary code execution with the privileges of the
Samba server (smbd). (CVE-2010-3069)

Users of Samba are advised to upgrade to these updated packages, which
correct this issue. After installing this update, the smb service will be
restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3069.html">CVE-2010-3069</cve>
                <bugzilla href="http://bugzilla.redhat.com/630869" id="630869">CVE-2010-3069 Samba: Stack-based buffer overflow by processing specially-crafted SID records</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860023" comment="samba-domainjoin-gui is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860024" comment="samba-domainjoin-gui is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860011" comment="libsmbclient is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860012" comment="libsmbclient is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860009" comment="samba-winbind is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860010" comment="samba-winbind is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860013" comment="samba-client is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860014" comment="samba-client is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860021" comment="libsmbclient-devel is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860022" comment="libsmbclient-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860017" comment="samba-winbind-devel is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860018" comment="samba-winbind-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860015" comment="samba-common is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860016" comment="samba-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860005" comment="samba is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860006" comment="samba is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860025" comment="samba-doc is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860026" comment="samba-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860019" comment="samba-winbind-clients is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860020" comment="samba-winbind-clients is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100860007" comment="samba-swat is earlier than 0:3.5.4-68.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100860008" comment="samba-swat is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100861" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0861: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0861-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0861.html" />
          <reference source="CVE" ref_id="CVE-2010-3175" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3175.html" />
          <reference source="CVE" ref_id="CVE-2010-3176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3176.html" />
          <reference source="CVE" ref_id="CVE-2010-3177" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3177.html" />
          <reference source="CVE" ref_id="CVE-2010-3178" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3178.html" />
          <reference source="CVE" ref_id="CVE-2010-3179" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3179.html" />
          <reference source="CVE" ref_id="CVE-2010-3180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3180.html" />
          <reference source="CVE" ref_id="CVE-2010-3182" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3182.html" />
          <reference source="CVE" ref_id="CVE-2010-3183" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3183.html" />
          <reference source="CVE" ref_id="CVE-2010-3765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3765.html" />
    
    <description>Mozilla Firefox is an open source web browser. XULRunner provides the XUL
Runtime environment for Mozilla Firefox.

A race condition flaw was found in the way Firefox handled Document Object
Model (DOM) element properties. Malicious HTML content could cause Firefox
to crash or, potentially, execute arbitrary code with the privileges of the
user running Firefox. (CVE-2010-3765)

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-3175, CVE-2010-3176, CVE-2010-3179, CVE-2010-3183,
CVE-2010-3180)

A flaw was found in the way the Gopher parser in Firefox converted text
into HTML. A malformed file name on a Gopher server could, when accessed by
a victim running Firefox, allow arbitrary JavaScript to be executed in the
context of the Gopher domain. (CVE-2010-3177)

A same-origin policy bypass flaw was found in Firefox. An attacker could
create a malicious web page that, when viewed by a victim, could steal
private data from a different website the victim had loaded with Firefox.
(CVE-2010-3178)

A flaw was found in the script that launches Firefox. The LD_LIBRARY_PATH
variable was appending a "." character, which could allow a local attacker
to execute arbitrary code with the privileges of a different user running
Firefox, if that user ran Firefox from within an attacker-controlled
directory. (CVE-2010-3182)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.6.11 and 3.6.12. You can find links to the Mozilla
advisories in the References section of this erratum.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.6.12, which corrects these issues. After installing the
update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3175.html">CVE-2010-3175</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3176.html">CVE-2010-3176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3177.html">CVE-2010-3177</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3178.html">CVE-2010-3178</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3179.html">CVE-2010-3179</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3180.html">CVE-2010-3180</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3182.html">CVE-2010-3182</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3183.html">CVE-2010-3183</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3765.html">CVE-2010-3765</cve>
                <bugzilla href="http://bugzilla.redhat.com/642272" id="642272">CVE-2010-3176 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642275" id="642275">CVE-2010-3175 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642277" id="642277">CVE-2010-3179 Mozilla buffer overflow and memory corruption using document.write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642283" id="642283">CVE-2010-3180 Mozilla use-after-free error in nsBarProp</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642286" id="642286">CVE-2010-3183 Mozilla dangling pointer vulnerability in LookupGetterOrSetter</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642290" id="642290">CVE-2010-3177 Mozilla XSS in gopher parser when parsing hrefs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642294" id="642294">CVE-2010-3178 Mozilla cross-site information disclosure via modal calls</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642300" id="642300">CVE-2010-3182 Mozilla unsafe library loading flaw</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/646997" id="646997">CVE-2010-3765 Firefox race condition flaw (MFSA 2010-73)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100861005" comment="xulrunner is earlier than 0:1.9.2.12-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100861006" comment="xulrunner is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100861007" comment="xulrunner-devel is earlier than 0:1.9.2.12-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100861008" comment="xulrunner-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100861009" comment="firefox is earlier than 0:3.6.12-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100861010" comment="firefox is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100862" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0862: nss security update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0862-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0862.html" />
          <reference source="CVE" ref_id="CVE-2010-3170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3170.html" />
    
    <description>Network Security Services (NSS) is a set of libraries designed to support
the development of security-enabled client and server applications.

A flaw was found in the way NSS matched SSL certificates when the
certificates had a Common Name containing a wildcard and a partial IP
address. NSS incorrectly accepted connections to IP addresses that fell
within the SSL certificate's wildcard range as valid SSL connections,
possibly allowing an attacker to conduct a man-in-the-middle attack.
(CVE-2010-3170)

All NSS users should upgrade to these updated packages, which provide NSS
version 3.12.8 to resolve this issue. After installing the update,
applications using NSS must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3170.html">CVE-2010-3170</cve>
                <bugzilla href="http://bugzilla.redhat.com/630047" id="630047">CVE-2010-3170 firefox/nss: doesn't handle IP-based wildcards in X509 certificates safely</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642410" id="642410">nss update needed for firefox</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862007" comment="nss-sysinit is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862008" comment="nss-sysinit is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862005" comment="nss is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862006" comment="nss is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862011" comment="nss-tools is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862012" comment="nss-tools is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862013" comment="nss-devel is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862014" comment="nss-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862009" comment="nss-pkcs11-devel is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862010" comment="nss-pkcs11-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862015" comment="nss-util is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862016" comment="nss-util is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862017" comment="nss-util-devel is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862018" comment="nss-util-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862021" comment="nss-softokn-freebl is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862022" comment="nss-softokn-freebl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862023" comment="nss-softokn-devel is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862024" comment="nss-softokn-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100862019" comment="nss-softokn is earlier than 0:3.12.8-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100862020" comment="nss-softokn is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100863" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0863: krb5 security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0863-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0863.html" />
          <reference source="CVE" ref_id="CVE-2010-1322" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1322.html" />
    
    <description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other using symmetric encryption and a
trusted third party, the Key Distribution Center (KDC).

An uninitialized pointer use flaw was found in the way the MIT Kerberos KDC
handled TGS (Ticket-granting Server) request messages. A remote,
authenticated attacker could use this flaw to crash the KDC or, possibly,
disclose KDC memory or execute arbitrary code with the privileges of the
KDC (krb5kdc). (CVE-2010-1322)

Red Hat would like to thank the MIT Kerberos Team for reporting this issue.
Upstream acknowledges Mike Roszkowski as the original reporter.

All krb5 users should upgrade to these updated packages, which contain a
backported patch to correct this issue. After installing the updated
packages, the krb5kdc daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1322.html">CVE-2010-1322</cve>
                <bugzilla href="http://bugzilla.redhat.com/636335" id="636335">CVE-2010-1322 krb5: KDC uninitialized pointer crash in authorization data handling (MITKRB5-SA-2010-006)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100863017" comment="krb5-libs is earlier than 0:1.8.2-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863018" comment="krb5-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100863009" comment="krb5-pkinit-openssl is earlier than 0:1.8.2-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863010" comment="krb5-pkinit-openssl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100863013" comment="krb5-devel is earlier than 0:1.8.2-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863014" comment="krb5-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100863011" comment="krb5-server is earlier than 0:1.8.2-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863012" comment="krb5-server is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100863007" comment="krb5-server-ldap is earlier than 0:1.8.2-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863008" comment="krb5-server-ldap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100863005" comment="krb5 is earlier than 0:1.8.2-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863006" comment="krb5 is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100863015" comment="krb5-workstation is earlier than 0:1.8.2-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863016" comment="krb5-workstation is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100864" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0864: freetype security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0864-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0864.html" />
          <reference source="CVE" ref_id="CVE-2010-2805" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2805.html" />
          <reference source="CVE" ref_id="CVE-2010-2806" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2806.html" />
          <reference source="CVE" ref_id="CVE-2010-2808" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2808.html" />
          <reference source="CVE" ref_id="CVE-2010-3311" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3311.html" />
    
    <description>FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently. These packages provide the FreeType 2 font engine.

It was found that the FreeType font rendering engine improperly validated
certain position values when processing input streams. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2805,
CVE-2010-3311)

A stack-based buffer overflow flaw was found in the way the FreeType font
rendering engine processed some PostScript Type 1 fonts. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2808)

An array index error was found in the way the FreeType font rendering
engine processed certain PostScript Type 42 font files. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-2806)

Note: All of the issues in this erratum only affect the FreeType 2 font
engine.

Users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues. The X server must be restarted
(log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2805.html">CVE-2010-2805</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2806.html">CVE-2010-2806</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2808.html">CVE-2010-2808</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3311.html">CVE-2010-3311</cve>
                <bugzilla href="http://bugzilla.redhat.com/621907" id="621907">CVE-2010-2808 FreeType: Stack-based buffer overflow by processing certain LWFN fonts</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/621980" id="621980">CVE-2010-2806 FreeType: Heap-based buffer overflow by processing FontType42 fonts with negative length of SFNT strings (FT bug #30656)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/623625" id="623625">CVE-2010-3311 freetype: Input stream position error by processing Compact Font Format (CFF) font files</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/625626" id="625626">CVE-2010-2805 freetype: FT_Stream_EnterFrame() does not properly validate certain position values</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100864005" comment="freetype is earlier than 0:2.3.11-6.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100864006" comment="freetype is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100864007" comment="freetype-demos is earlier than 0:2.3.11-6.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100864008" comment="freetype-demos is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100864009" comment="freetype-devel is earlier than 0:2.3.11-6.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100864010" comment="freetype-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100865" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0865: java-1.6.0-openjdk security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0865-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0865.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-3541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3541.html" />
          <reference source="CVE" ref_id="CVE-2010-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3548.html" />
          <reference source="CVE" ref_id="CVE-2010-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3549.html" />
          <reference source="CVE" ref_id="CVE-2010-3551" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3551.html" />
          <reference source="CVE" ref_id="CVE-2010-3553" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3553.html" />
          <reference source="CVE" ref_id="CVE-2010-3554" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3554.html" />
          <reference source="CVE" ref_id="CVE-2010-3557" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3557.html" />
          <reference source="CVE" ref_id="CVE-2010-3561" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3561.html" />
          <reference source="CVE" ref_id="CVE-2010-3562" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3562.html" />
          <reference source="CVE" ref_id="CVE-2010-3564" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3564.html" />
          <reference source="CVE" ref_id="CVE-2010-3565" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3565.html" />
          <reference source="CVE" ref_id="CVE-2010-3567" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3567.html" />
          <reference source="CVE" ref_id="CVE-2010-3568" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3568.html" />
          <reference source="CVE" ref_id="CVE-2010-3569" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3569.html" />
          <reference source="CVE" ref_id="CVE-2010-3573" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3573.html" />
          <reference source="CVE" ref_id="CVE-2010-3574" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3574.html" />
    
    <description>These packages provide the OpenJDK 6 Java Runtime Environment and the
OpenJDK 6 Software Development Kit.

defaultReadObject of the Serialization API could be tricked into setting a
volatile field multiple times, which could allow a remote attacker to
execute arbitrary code with the privileges of the user running the applet
or application. (CVE-2010-3569)

Race condition in the way objects were deserialized could allow an
untrusted applet or application to misuse the privileges of the user
running the applet or application. (CVE-2010-3568)

Miscalculation in the OpenType font rendering implementation caused
out-of-bounds memory access, which could allow remote attackers to execute
code with the privileges of the user running the java process.
(CVE-2010-3567)

JPEGImageWriter.writeImage in the imageio API improperly checked certain
image metadata, which could allow a remote attacker to execute arbitrary
code in the context of the user running the applet or application.
(CVE-2010-3565)

Double free in IndexColorModel could cause an untrusted applet or
application to crash or, possibly, execute arbitrary code with the
privileges of the user running the applet or application. (CVE-2010-3562)

The privileged accept method of the ServerSocket class in the Common Object
Request Broker Architecture (CORBA) implementation in OpenJDK allowed it to
receive connections from any host, instead of just the host of the current
connection. An attacker could use this flaw to bypass restrictions defined
by network permissions. (CVE-2010-3561)

Flaws in the Swing library could allow an untrusted application to modify
the behavior and state of certain JDK classes. (CVE-2010-3557)

Flaws in the CORBA implementation could allow an attacker to execute
arbitrary code by misusing permissions granted to certain system objects.
(CVE-2010-3554)

UIDefault.ProxyLazyValue had unsafe reflection usage, allowing untrusted
callers to create objects via ProxyLazyValue values. (CVE-2010-3553)

HttpURLConnection improperly handled the "chunked" transfer encoding
method, which could allow remote attackers to conduct HTTP response
splitting attacks. (CVE-2010-3549)

HttpURLConnection improperly checked whether the calling code was granted
the "allowHttpTrace" permission, allowing untrusted code to create HTTP
TRACE requests. (CVE-2010-3574)

HttpURLConnection did not validate request headers set by applets, which
could allow remote attackers to trigger actions otherwise restricted to
HTTP clients. (CVE-2010-3541, CVE-2010-3573)

The Kerberos implementation improperly checked the sanity of AP-REQ
requests, which could cause a denial of service condition in the receiving
Java Virtual Machine. (CVE-2010-3564)

The java-1.6.0-openjdk packages shipped with the GA release of Red Hat
Enterprise Linux 6 mitigated a man-in-the-middle attack in the way the
TLS/SSL protocols handle session renegotiation by disabling renegotiation.
This update implements the TLS Renegotiation Indication Extension as
defined in RFC 5746, allowing secure renegotiation between updated clients
and servers. (CVE-2009-3555)

The NetworkInterface class improperly checked the network "connect"
permissions for local network addresses, which could allow remote attackers
to read local network addresses. (CVE-2010-3551)

Information leak flaw in the Java Naming and Directory Interface (JNDI)
could allow a remote attacker to access information about
otherwise-protected internal network names. (CVE-2010-3548)

Note: Flaws concerning applets in this advisory (CVE-2010-3568,
CVE-2010-3554, CVE-2009-3555, CVE-2010-3562, CVE-2010-3557, CVE-2010-3548,
CVE-2010-3564, CVE-2010-3565, CVE-2010-3569) can only be triggered in
OpenJDK by calling the "appletviewer" application.

Bug fixes:

* One defense in depth patch. (BZ#639922)

* Problems for certain SSL connections. In a reported case, this prevented
the JBoss JAAS modules from connecting over SSL to Microsoft Active
Directory servers. (BZ#642779)</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3541.html">CVE-2010-3541</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3548.html">CVE-2010-3548</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3549.html">CVE-2010-3549</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3551.html">CVE-2010-3551</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3553.html">CVE-2010-3553</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3554.html">CVE-2010-3554</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3557.html">CVE-2010-3557</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3561.html">CVE-2010-3561</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3562.html">CVE-2010-3562</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3564.html">CVE-2010-3564</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3565.html">CVE-2010-3565</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3567.html">CVE-2010-3567</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3568.html">CVE-2010-3568</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3569.html">CVE-2010-3569</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3573.html">CVE-2010-3573</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3574.html">CVE-2010-3574</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639876" id="639876">CVE-2010-3568 OpenJDK Deserialization Race condition (6559775)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639880" id="639880">CVE-2010-3554 CVE-2010-3561  OpenJDK corba reflection vulnerabilities (6891766,6925672)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639897" id="639897">CVE-2010-3562 OpenJDK IndexColorModel double-free (6925710)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639904" id="639904">CVE-2010-3557 OpenJDK Swing mutable static (6938813)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639909" id="639909">CVE-2010-3548 OpenJDK DNS server IP address information leak (6957564)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639914" id="639914">CVE-2010-3564 OpenJDK kerberos vulnerability (6958060)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639920" id="639920">CVE-2010-3565 OpenJDK JPEG writeImage remote code execution (6963023)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639922" id="639922">CVE-2010-3566 OpenJDK ICC Profile remote code execution (6963489)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639925" id="639925">CVE-2010-3569 OpenJDK Serialization inconsistencies (6966692)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642167" id="642167">CVE-2010-3553 OpenJDK Swing unsafe reflection usage (6622002)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642180" id="642180">CVE-2010-3549 OpenJDK HttpURLConnection request splitting (6952017)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642187" id="642187">CVE-2010-3551 OpenJDK local network address disclosure (6952603)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642197" id="642197">CVE-2010-3567 OpenJDK ICU Opentype layout engine crash (6963285)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642202" id="642202">CVE-2010-3541 CVE-2010-3573 OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642215" id="642215">CVE-2010-3574 OpenJDK HttpURLConnection incomplete TRACE permission check (6981426)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642779" id="642779">Error connecting to Active Directory (AD) over SSL.</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100865005" comment="java-1.6.0-openjdk is earlier than 1:1.6.0.0-1.31.b17.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100865006" comment="java-1.6.0-openjdk is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100865011" comment="java-1.6.0-openjdk-src is earlier than 1:1.6.0.0-1.31.b17.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100865012" comment="java-1.6.0-openjdk-src is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100865009" comment="java-1.6.0-openjdk-demo is earlier than 1:1.6.0.0-1.31.b17.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100865010" comment="java-1.6.0-openjdk-demo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100865007" comment="java-1.6.0-openjdk-devel is earlier than 1:1.6.0.0-1.31.b17.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100865008" comment="java-1.6.0-openjdk-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100865013" comment="java-1.6.0-openjdk-javadoc is earlier than 1:1.6.0.0-1.31.b17.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100865014" comment="java-1.6.0-openjdk-javadoc is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100866" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0866: cups security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0866-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0866.html" />
          <reference source="CVE" ref_id="CVE-2010-2941" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2941.html" />
    
    <description>The Common UNIX Printing System (CUPS) provides a portable printing layer
for UNIX operating systems.

An invalid free flaw was found in the way the CUPS server parsed Internet
Printing Protocol (IPP) packets. A malicious user able to send IPP requests
to the CUPS server could use this flaw to crash the CUPS server.
(CVE-2010-2941)

Red Hat would like to thank Emmanuel Bouillon of NATO C3 Agency for
reporting this issue.

Users of cups are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. After installing this
update, the cupsd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2941.html">CVE-2010-2941</cve>
                <bugzilla href="http://bugzilla.redhat.com/624438" id="624438">CVE-2010-2941 cups: cupsd memory corruption vulnerability</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100866009" comment="cups-lpd is earlier than 1:1.4.2-35.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100866010" comment="cups-lpd is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100866011" comment="cups-php is earlier than 1:1.4.2-35.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100866012" comment="cups-php is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100866007" comment="cups-devel is earlier than 1:1.4.2-35.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100866008" comment="cups-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100866013" comment="cups-libs is earlier than 1:1.4.2-35.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100866014" comment="cups-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100866005" comment="cups is earlier than 1:1.4.2-35.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100866006" comment="cups is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100867" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0867: flash-plugin security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0867-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0867.html" />
          <reference source="CVE" ref_id="CVE-2010-3636" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3636.html" />
          <reference source="CVE" ref_id="CVE-2010-3639" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3639.html" />
          <reference source="CVE" ref_id="CVE-2010-3640" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3640.html" />
          <reference source="CVE" ref_id="CVE-2010-3641" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3641.html" />
          <reference source="CVE" ref_id="CVE-2010-3642" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3642.html" />
          <reference source="CVE" ref_id="CVE-2010-3643" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3643.html" />
          <reference source="CVE" ref_id="CVE-2010-3644" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3644.html" />
          <reference source="CVE" ref_id="CVE-2010-3645" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3645.html" />
          <reference source="CVE" ref_id="CVE-2010-3646" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3646.html" />
          <reference source="CVE" ref_id="CVE-2010-3647" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3647.html" />
          <reference source="CVE" ref_id="CVE-2010-3648" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3648.html" />
          <reference source="CVE" ref_id="CVE-2010-3649" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3649.html" />
          <reference source="CVE" ref_id="CVE-2010-3650" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3650.html" />
          <reference source="CVE" ref_id="CVE-2010-3652" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3652.html" />
          <reference source="CVE" ref_id="CVE-2010-3654" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3654.html" />
    
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes multiple vulnerabilities in Adobe Flash Player. These
vulnerabilities are detailed on the Adobe security page APSB10-26, listed
in the References section.

Multiple security flaws were found in the way flash-plugin displayed
certain SWF content. An attacker could use these flaws to create a
specially-crafted SWF file that would cause flash-plugin to crash or,
potentially, execute arbitrary code when the victim loaded a page
containing the specially-crafted SWF content. (CVE-2010-3639,
CVE-2010-3640, CVE-2010-3641, CVE-2010-3642, CVE-2010-3643, CVE-2010-3644,
CVE-2010-3645, CVE-2010-3646, CVE-2010-3647, CVE-2010-3648, CVE-2010-3649,
CVE-2010-3650, CVE-2010-3652, CVE-2010-3654)

An input validation flaw was discovered in flash-plugin. Certain server
encodings could lead to a bypass of cross-domain policy file restrictions,
possibly leading to cross-domain information disclosure. (CVE-2010-3636)

During testing, it was discovered that there were regressions with Flash
Player on certain sites, such as fullscreen playback on YouTube. Despite
these regressions, we feel these security flaws are serious enough to
update the package with what Adobe has provided.

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.1.102.64.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3636.html">CVE-2010-3636</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3639.html">CVE-2010-3639</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3640.html">CVE-2010-3640</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3641.html">CVE-2010-3641</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3642.html">CVE-2010-3642</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3643.html">CVE-2010-3643</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3644.html">CVE-2010-3644</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3645.html">CVE-2010-3645</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3646.html">CVE-2010-3646</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3647.html">CVE-2010-3647</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3648.html">CVE-2010-3648</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3649.html">CVE-2010-3649</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3650.html">CVE-2010-3650</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3652.html">CVE-2010-3652</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3654.html">CVE-2010-3654</cve>
                <bugzilla href="http://bugzilla.redhat.com/647525" id="647525">CVE-2010-3654 acroread/flash-plugin: critical vulnerablility (APSA10-05, APSB10-26)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/649938" id="649938">flash-plugin: security bulletin APSB10-26</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100867005" comment="flash-plugin is earlier than 0:10.1.102.64-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100867006" comment="flash-plugin is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100872" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0872: glibc security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0872-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0872.html" />
          <reference source="CVE" ref_id="CVE-2010-3847" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3847.html" />
          <reference source="CVE" ref_id="CVE-2010-3856" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3856.html" />
    
    <description>The glibc packages contain the standard C libraries used by multiple
programs on the system. These packages contain the standard C and the
standard math libraries. Without these two libraries, a Linux system
cannot function properly.

It was discovered that the glibc dynamic linker/loader did not handle the
$ORIGIN dynamic string token set in the LD_AUDIT environment variable
securely. A local attacker with write access to a file system containing
setuid or setgid binaries could use this flaw to escalate their privileges.
(CVE-2010-3847)

It was discovered that the glibc dynamic linker/loader did not perform
sufficient safety checks when loading dynamic shared objects (DSOs) to
provide callbacks for its auditing API during the execution of privileged
programs. A local attacker could use this flaw to escalate their privileges
via a carefully-chosen system DSO library containing unsafe constructors.
(CVE-2010-3856)

Red Hat would like to thank Tavis Ormandy for reporting the CVE-2010-3847
issue, and Ben Hawkes and Tavis Ormandy for reporting the CVE-2010-3856
issue.

This update also fixes the following bugs:

* Previously, the generic implementation of the strstr() and memmem()
functions did not handle certain periodic patterns correctly and could find
a false positive match. This error has been fixed, and both functions now
work as expected. (BZ#643341)

* The "TCB_ALIGNMENT" value has been increased to 32 bytes to prevent
applications from crashing during symbol resolution on 64-bit systems with
support for Intel AVX vector registers. (BZ#643343)

All users are advised to upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3847.html">CVE-2010-3847</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3856.html">CVE-2010-3856</cve>
                <bugzilla href="http://bugzilla.redhat.com/643306" id="643306">CVE-2010-3847 glibc: ld.so insecure handling of $ORIGIN in LD_AUDIT for setuid/setgid programs</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/643341" id="643341">memmem, strstr, and strcasestr are broken</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/643343" id="643343">[Intel 6.0 Bug] Dynamic linker failed to align TCB for AVX</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/645672" id="645672">CVE-2010-3856 glibc: ld.so arbitrary DSO loading via LD_AUDIT in setuid/setgid programs</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100872007" comment="glibc-static is earlier than 0:2.12-1.7.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100872008" comment="glibc-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100872011" comment="glibc-common is earlier than 0:2.12-1.7.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100872012" comment="glibc-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100872009" comment="glibc-headers is earlier than 0:2.12-1.7.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100872010" comment="glibc-headers is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100872017" comment="glibc-devel is earlier than 0:2.12-1.7.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100872018" comment="glibc-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100872005" comment="glibc is earlier than 0:2.12-1.7.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100872006" comment="glibc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100872015" comment="nscd is earlier than 0:2.12-1.7.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100872016" comment="nscd is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100872013" comment="glibc-utils is earlier than 0:2.12-1.7.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100872014" comment="glibc-utils is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100873" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0873: java-1.5.0-ibm security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0873-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0873.html" />
          <reference source="CVE" ref_id="CVE-2010-1321" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1321.html" />
          <reference source="CVE" ref_id="CVE-2010-3541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3541.html" />
          <reference source="CVE" ref_id="CVE-2010-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3548.html" />
          <reference source="CVE" ref_id="CVE-2010-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3549.html" />
          <reference source="CVE" ref_id="CVE-2010-3550" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3550.html" />
          <reference source="CVE" ref_id="CVE-2010-3551" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3551.html" />
          <reference source="CVE" ref_id="CVE-2010-3556" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3556.html" />
          <reference source="CVE" ref_id="CVE-2010-3559" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3559.html" />
          <reference source="CVE" ref_id="CVE-2010-3562" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3562.html" />
          <reference source="CVE" ref_id="CVE-2010-3565" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3565.html" />
          <reference source="CVE" ref_id="CVE-2010-3566" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3566.html" />
          <reference source="CVE" ref_id="CVE-2010-3568" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3568.html" />
          <reference source="CVE" ref_id="CVE-2010-3569" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3569.html" />
          <reference source="CVE" ref_id="CVE-2010-3572" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3572.html" />
          <reference source="CVE" ref_id="CVE-2010-3573" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3573.html" />
          <reference source="CVE" ref_id="CVE-2010-3574" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3574.html" />
    
    <description>The IBM 1.5.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit. Detailed
vulnerability descriptions are linked from the IBM "Security alerts" page,
listed in the References section. (CVE-2010-1321, CVE-2010-3541,
CVE-2010-3548, CVE-2010-3549, CVE-2010-3550, CVE-2010-3551, CVE-2010-3556,
CVE-2010-3559, CVE-2010-3562, CVE-2010-3565, CVE-2010-3566, CVE-2010-3568,
CVE-2010-3569, CVE-2010-3572, CVE-2010-3573, CVE-2010-3574)

All users of java-1.5.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.5.0 SR12-FP2 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-10" />
        <updated date="2010-11-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1321.html">CVE-2010-1321</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3541.html">CVE-2010-3541</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3548.html">CVE-2010-3548</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3549.html">CVE-2010-3549</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3550.html">CVE-2010-3550</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3551.html">CVE-2010-3551</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3556.html">CVE-2010-3556</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3559.html">CVE-2010-3559</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3562.html">CVE-2010-3562</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3565.html">CVE-2010-3565</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3566.html">CVE-2010-3566</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3568.html">CVE-2010-3568</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3569.html">CVE-2010-3569</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3572.html">CVE-2010-3572</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3573.html">CVE-2010-3573</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3574.html">CVE-2010-3574</cve>
                <bugzilla href="http://bugzilla.redhat.com/582466" id="582466">CVE-2010-1321 krb5: null pointer dereference in GSS-API library leads to DoS (MITKRB5-SA-2010-005)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639876" id="639876">CVE-2010-3568 OpenJDK Deserialization Race condition (6559775)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639897" id="639897">CVE-2010-3562 OpenJDK IndexColorModel double-free (6925710)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639909" id="639909">CVE-2010-3548 OpenJDK DNS server IP address information leak (6957564)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639920" id="639920">CVE-2010-3565 OpenJDK JPEG writeImage remote code execution (6963023)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639922" id="639922">CVE-2010-3566 OpenJDK ICC Profile remote code execution (6963489)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639925" id="639925">CVE-2010-3569 OpenJDK Serialization inconsistencies (6966692)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642180" id="642180">CVE-2010-3549 OpenJDK HttpURLConnection request splitting (6952017)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642187" id="642187">CVE-2010-3551 OpenJDK local network address disclosure (6952603)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642202" id="642202">CVE-2010-3541 CVE-2010-3573 OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642215" id="642215">CVE-2010-3574 OpenJDK HttpURLConnection incomplete TRACE permission check (6981426)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642559" id="642559">CVE-2010-3550 JDK unspecified vulnerability in Java Web Start component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642576" id="642576">CVE-2010-3556 JDK unspecified vulnerability in 2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642606" id="642606">CVE-2010-3559 JDK unspecified vulnerability in Sound component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642611" id="642611">CVE-2010-3572 JDK unspecified vulnerability in Sound component</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100873015" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.12.2-1jpp.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100873016" comment="java-1.5.0-ibm-jdbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100873005" comment="java-1.5.0-ibm is earlier than 1:1.5.0.12.2-1jpp.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100873006" comment="java-1.5.0-ibm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100873007" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.12.2-1jpp.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100873008" comment="java-1.5.0-ibm-src is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100873017" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.12.2-1jpp.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100873018" comment="java-1.5.0-ibm-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100873011" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.12.2-1jpp.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100873012" comment="java-1.5.0-ibm-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100873009" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.12.2-1jpp.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100873010" comment="java-1.5.0-ibm-demo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100873013" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.12.2-1jpp.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100873014" comment="java-1.5.0-ibm-javacomm is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100888" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0888: openssl security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0888-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0888.html" />
          <reference source="CVE" ref_id="CVE-2010-3864" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3864.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

A race condition flaw has been found in the OpenSSL TLS server extension
parsing code, which could affect some multithreaded OpenSSL applications.
Under certain specific conditions, it may be possible for a remote attacker
to trigger this race condition and cause such an application to crash, or
possibly execute arbitrary code with the permissions of the application.
(CVE-2010-3864)

Note that this issue does not affect the Apache HTTP Server. Refer to Red
Hat Bugzilla bug 649304 for more technical details on how to determine if
your application is affected.

Red Hat would like to thank Rob Hulswit for reporting this issue.

All OpenSSL users should upgrade to these updated packages, which contain a
backported patch to resolve this issue. For the update to take effect, all
services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-16" />
        <updated date="2010-11-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3864.html">CVE-2010-3864</cve>
                <bugzilla href="http://bugzilla.redhat.com/649304" id="649304">CVE-2010-3864 OpenSSL TLS extension parsing race condition</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100888005" comment="openssl is earlier than 0:1.0.0-4.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100888006" comment="openssl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100888009" comment="openssl-static is earlier than 0:1.0.0-4.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100888010" comment="openssl-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100888007" comment="openssl-perl is earlier than 0:1.0.0-4.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100888008" comment="openssl-perl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100888011" comment="openssl-devel is earlier than 0:1.0.0-4.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100888012" comment="openssl-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100889" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0889: freetype security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0889-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0889.html" />
          <reference source="CVE" ref_id="CVE-2010-3855" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3855.html" />
    
    <description>FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently. The freetype packages for Red Hat Enterprise Linux 4 provide
both the FreeType 1 and FreeType 2 font engines. The freetype packages for
Red Hat Enterprise Linux 5 and 6 provide only the FreeType 2 font engine.

A heap-based buffer overflow flaw was found in the way the FreeType font
rendering engine processed certain TrueType GX fonts. If a user loaded a
specially-crafted font file with an application linked against FreeType, it
could cause the application to crash or, possibly, execute arbitrary code
with the privileges of the user running the application. (CVE-2010-3855)

Note: This issue only affects the FreeType 2 font engine.

Users are advised to upgrade to these updated packages, which contain a
backported patch to correct this issue. The X server must be restarted (log
out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-16" />
        <updated date="2010-11-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3855.html">CVE-2010-3855</cve>
                <bugzilla href="http://bugzilla.redhat.com/645275" id="645275">CVE-2010-3855 Freetype : Heap based buffer overflow in ft_var_readpackedpoints()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889002" comment="freetype is earlier than 0:2.2.1-28.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578003" comment="freetype is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889006" comment="freetype-demos is earlier than 0:2.2.1-28.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578007" comment="freetype-demos is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889004" comment="freetype-devel is earlier than 0:2.2.1-28.el5_5.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100578005" comment="freetype-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889012" comment="freetype is earlier than 0:2.3.11-6.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100864006" comment="freetype is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889016" comment="freetype-demos is earlier than 0:2.3.11-6.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100864008" comment="freetype-demos is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889014" comment="freetype-devel is earlier than 0:2.3.11-6.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100864010" comment="freetype-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889025" comment="freetype-utils is earlier than 0:2.1.9-17.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577009" comment="freetype-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889019" comment="freetype is earlier than 0:2.1.9-17.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577003" comment="freetype is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889021" comment="freetype-demos is earlier than 0:2.1.9-17.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577007" comment="freetype-demos is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100889023" comment="freetype-devel is earlier than 0:2.1.9-17.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100577005" comment="freetype-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100890" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0890: pidgin security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0890-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0890.html" />
          <reference source="CVE" ref_id="CVE-2010-3711" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3711.html" />
    
    <description>Pidgin is an instant messaging program which can log in to multiple
accounts on multiple instant messaging networks simultaneously.

Multiple NULL pointer dereference flaws were found in the way Pidgin
handled Base64 decoding. A remote attacker could use these flaws to crash
Pidgin if the target Pidgin user was using the Yahoo! Messenger Protocol,
MSN, MySpace, or Extensible Messaging and Presence Protocol (XMPP) protocol
plug-ins, or using the Microsoft NT LAN Manager (NTLM) protocol for
authentication. (CVE-2010-3711)

Red Hat would like to thank the Pidgin project for reporting these issues.
Upstream acknowledges Daniel Atallah as the original reporter.

All Pidgin users should upgrade to these updated packages, which contain a
backported patch to resolve these issues. Pidgin must be restarted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-16" />
        <updated date="2010-11-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3711.html">CVE-2010-3711</cve>
                <bugzilla href="http://bugzilla.redhat.com/641921" id="641921">CVE-2010-3711 Pidgin (libpurple): Multiple DoS (crash) flaws by processing of unsanitized Base64 decoder values</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890019" comment="finch is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890020" comment="finch is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890013" comment="libpurple-perl is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890014" comment="libpurple-perl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890007" comment="libpurple is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890008" comment="libpurple is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890005" comment="pidgin is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890006" comment="pidgin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890023" comment="pidgin-docs is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890024" comment="pidgin-docs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890017" comment="pidgin-devel is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890018" comment="pidgin-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890015" comment="libpurple-devel is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890016" comment="libpurple-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890011" comment="finch-devel is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890012" comment="finch-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890009" comment="pidgin-perl is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890010" comment="pidgin-perl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100890021" comment="libpurple-tcl is earlier than 0:2.6.6-6.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100890022" comment="libpurple-tcl is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100891" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0891: pam security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0891-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0891.html" />
          <reference source="CVE" ref_id="CVE-2010-3316" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3316.html" />
          <reference source="CVE" ref_id="CVE-2010-3435" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3435.html" />
          <reference source="CVE" ref_id="CVE-2010-3853" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3853.html" />
          <reference source="CVE" ref_id="CVE-2010-4707" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4707.html" />
          <reference source="CVE" ref_id="CVE-2010-4708" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4708.html" />
    
    <description>Pluggable Authentication Modules (PAM) provide a system whereby
administrators can set up authentication policies without having to
recompile programs that handle authentication.

It was discovered that the pam_namespace module executed the external
script namespace.init with an unchanged environment inherited from an
application calling PAM. In cases where such an environment was untrusted
(for example, when pam_namespace was configured for setuid applications
such as su or sudo), a local, unprivileged user could possibly use this
flaw to escalate their privileges. (CVE-2010-3853)

It was discovered that the pam_env and pam_mail modules used root
privileges while accessing user's files. A local, unprivileged user could
use this flaw to obtain information, from the lines that have the KEY=VALUE
format expected by pam_env, from an arbitrary file. Also, in certain
configurations, a local, unprivileged user using a service for which the
pam_mail module was configured for, could use this flaw to obtain limited
information about files or directories that they do not have access to.
(CVE-2010-3435)

Note: As part of the fix for CVE-2010-3435, this update changes the default
value of pam_env's configuration option user_readenv to 0, causing the
module to not read user's ~/.pam_environment configuration file by default,
as reading it may introduce unexpected changes to the environment of the
service using PAM, or PAM modules consulted after pam_env.

It was discovered that the pam_xauth module did not verify the return
values of the setuid() and setgid() system calls. A local, unprivileged
user could use this flaw to execute the xauth command with root privileges
and make it read an arbitrary input file. (CVE-2010-3316)

Red Hat would like to thank Sebastian Krahmer of the SuSE Security Team for
reporting the CVE-2010-3435 issue.

All pam users should upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-16" />
        <updated date="2010-11-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3316.html">CVE-2010-3316</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3435.html">CVE-2010-3435</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3853.html">CVE-2010-3853</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4707.html">CVE-2010-4707</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4708.html">CVE-2010-4708</cve>
                <bugzilla href="http://bugzilla.redhat.com/637898" id="637898">CVE-2010-3316 pam: pam_xauth missing return value checks from setuid() and similar calls</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641335" id="641335">CVE-2010-3435 pam: pam_env and pam_mail accessing users' file with root privileges</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/643043" id="643043">CVE-2010-3853 pam: pam_namespace executes namespace.init with service's environment</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100891007" comment="pam-devel is earlier than 0:1.1.1-4.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100891008" comment="pam-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100891005" comment="pam is earlier than 0:1.1.1-4.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100891006" comment="pam is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100892" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0892: openswan security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0892-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0892.html" />
          <reference source="CVE" ref_id="CVE-2010-3302" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3302.html" />
          <reference source="CVE" ref_id="CVE-2010-3308" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3308.html" />
          <reference source="CVE" ref_id="CVE-2010-3752" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3752.html" />
          <reference source="CVE" ref_id="CVE-2010-3753" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3753.html" />
    
    <description>Openswan is a free implementation of Internet Protocol Security (IPsec)
and Internet Key Exchange (IKE). IPsec uses strong cryptography to provide
both authentication and encryption services. These services allow you to
build secure tunnels through untrusted networks.

Two buffer overflow flaws were found in the Openswan client-side XAUTH
handling code used when connecting to certain Cisco gateways. A malicious
or compromised VPN gateway could use these flaws to execute arbitrary code
on the connecting Openswan client. (CVE-2010-3302, CVE-2010-3308)

Two input sanitization flaws were found in the Openswan client-side
handling of Cisco gateway banners. A malicious or compromised VPN gateway
could use these flaws to execute arbitrary code on the connecting Openswan
client. (CVE-2010-3752, CVE-2010-3753)

Red Hat would like to thank the Openswan project for reporting these
issues. Upstream acknowledges D. Hugh Redelmeier and Paul Wouters as the
original reporters.

All users of openswan are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. After installing
this update, the ipsec service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-16" />
        <updated date="2010-11-16" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3302.html">CVE-2010-3302</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3308.html">CVE-2010-3308</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3752.html">CVE-2010-3752</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3753.html">CVE-2010-3753</cve>
                <bugzilla href="http://bugzilla.redhat.com/634264" id="634264">CVE-2010-3302 openswan: buffer overflow vulnerability in XAUTH client-side support</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637924" id="637924">CVE-2010-3308 Openswan cisco banner option handling vulnerability</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640711" id="640711">CVE-2010-3752 Openswan: Gateway arbitrary code execution via shell metacharacters in cisco_dns_info or cisco_domain_info data in packet</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640715" id="640715">CVE-2010-3753 Openswan: Gateway arbitrary execution via shell metacharacters in the cisco_banner</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100892005" comment="openswan is earlier than 0:2.6.24-8.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100892006" comment="openswan is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100892007" comment="openswan-doc is earlier than 0:2.6.24-8.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100892008" comment="openswan-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100894" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0894: systemtap security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0894-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0894.html" />
          <reference source="CVE" ref_id="CVE-2010-4170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4170.html" />
          <reference source="CVE" ref_id="CVE-2010-4171" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4171.html" />
    
    <description>SystemTap is an instrumentation system for systems running the Linux
kernel, version 2.6. Developers can write scripts to collect data on the
operation of the system. staprun, the SystemTap runtime tool, is used for
managing SystemTap kernel modules (for example, loading them).

It was discovered that staprun did not properly sanitize the environment
before executing the modprobe command to load an additional kernel module.
A local, unprivileged user could use this flaw to escalate their
privileges. (CVE-2010-4170)

It was discovered that staprun did not check if the module to be unloaded
was previously loaded by SystemTap. A local, unprivileged user could use
this flaw to unload an arbitrary kernel module that was not in use.
(CVE-2010-4171)

Note: After installing this update, users already in the stapdev group must
be added to the stapusr group in order to be able to run the staprun tool.

Red Hat would like to thank Tavis Ormandy for reporting these issues.

SystemTap users should upgrade to these updated packages, which contain
backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-17" />
        <updated date="2010-11-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4170.html">CVE-2010-4170</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4171.html">CVE-2010-4171</cve>
                <bugzilla href="http://bugzilla.redhat.com/653604" id="653604">CVE-2010-4170 Systemtap: Insecure loading of modules</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/653606" id="653606">CVE-2010-4171 Systemtap: Ability to remove unused modules by unprivileged user</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894014" comment="systemtap-testsuite is earlier than 0:1.1-3.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124005" comment="systemtap-testsuite is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894004" comment="systemtap-runtime is earlier than 0:1.1-3.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124007" comment="systemtap-runtime is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894002" comment="systemtap is earlier than 0:1.1-3.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124003" comment="systemtap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894008" comment="systemtap-sdt-devel is earlier than 0:1.1-3.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124015" comment="systemtap-sdt-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894012" comment="systemtap-client is earlier than 0:1.1-3.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124009" comment="systemtap-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894006" comment="systemtap-initscript is earlier than 0:1.1-3.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124011" comment="systemtap-initscript is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894010" comment="systemtap-server is earlier than 0:1.1-3.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100124013" comment="systemtap-server is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894034" comment="systemtap-runtime is earlier than 0:1.2-11.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100894035" comment="systemtap-runtime is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894030" comment="systemtap-grapher is earlier than 0:1.2-11.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100894031" comment="systemtap-grapher is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894028" comment="systemtap-testsuite is earlier than 0:1.2-11.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100894029" comment="systemtap-testsuite is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894020" comment="systemtap is earlier than 0:1.2-11.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100894021" comment="systemtap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894024" comment="systemtap-sdt-devel is earlier than 0:1.2-11.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100894025" comment="systemtap-sdt-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894022" comment="systemtap-client is earlier than 0:1.2-11.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100894023" comment="systemtap-client is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894026" comment="systemtap-initscript is earlier than 0:1.2-11.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100894027" comment="systemtap-initscript is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100894032" comment="systemtap-server is earlier than 0:1.2-11.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100894033" comment="systemtap-server is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100895" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0895: systemtap security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0895-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0895.html" />
          <reference source="CVE" ref_id="CVE-2010-4170" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4170.html" />
    
    <description>SystemTap is an instrumentation system for systems running the Linux
kernel, version 2.6. Developers can write scripts to collect data on the
operation of the system. staprun, the SystemTap runtime tool, is used for
managing SystemTap kernel modules (for example, loading them).

It was discovered that staprun did not properly sanitize the environment
before executing the modprobe command to load an additional kernel module.
A local, unprivileged user could use this flaw to escalate their
privileges. (CVE-2010-4170)

Note: On Red Hat Enterprise Linux 4, an attacker must be a member of the
stapusr group to exploit this issue. Also note that, after installing this
update, users already in the stapdev group must be added to the stapusr
group in order to be able to run the staprun tool.

Red Hat would like to thank Tavis Ormandy for reporting this issue.

SystemTap users should upgrade to these updated packages, which contain
a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-17" />
        <updated date="2010-11-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4170.html">CVE-2010-4170</cve>
                <bugzilla href="http://bugzilla.redhat.com/653604" id="653604">CVE-2010-4170 Systemtap: Insecure loading of modules</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100895006" comment="systemtap-runtime is earlier than 0:0.6.2-2.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100125007" comment="systemtap-runtime is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100895004" comment="systemtap-testsuite is earlier than 0:0.6.2-2.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100125005" comment="systemtap-testsuite is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100895002" comment="systemtap is earlier than 0:0.6.2-2.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100125003" comment="systemtap is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100896" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0896: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0896-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0896.html" />
          <reference source="CVE" ref_id="CVE-2010-3175" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3175.html" />
          <reference source="CVE" ref_id="CVE-2010-3176" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3176.html" />
          <reference source="CVE" ref_id="CVE-2010-3178" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3178.html" />
          <reference source="CVE" ref_id="CVE-2010-3179" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3179.html" />
          <reference source="CVE" ref_id="CVE-2010-3180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3180.html" />
          <reference source="CVE" ref_id="CVE-2010-3182" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3182.html" />
          <reference source="CVE" ref_id="CVE-2010-3183" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3183.html" />
          <reference source="CVE" ref_id="CVE-2010-3765" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3765.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

A race condition flaw was found in the way Thunderbird handled Document
Object Model (DOM) element properties. An HTML mail message containing
malicious content could cause Thunderbird to crash or, potentially, execute
arbitrary code with the privileges of the user running Thunderbird.
(CVE-2010-3765)

Several flaws were found in the processing of malformed HTML mail content.
An HTML mail message containing malicious content could cause Thunderbird
to crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2010-3175, CVE-2010-3176, CVE-2010-3179,
CVE-2010-3180, CVE-2010-3183)

A same-origin policy bypass flaw was found in Thunderbird. Remote HTML
content could steal private data from different remote HTML content
Thunderbird had loaded. (CVE-2010-3178)

Note: JavaScript support is disabled by default in Thunderbird. The above
issues are not exploitable unless JavaScript is enabled.

A flaw was found in the script that launches Thunderbird. The
LD_LIBRARY_PATH variable was appending a "." character, which could allow a
local attacker to execute arbitrary code with the privileges of a different
user running Thunderbird, if that user ran Thunderbird from within an
attacker-controlled directory. (CVE-2010-3182)

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-17" />
        <updated date="2010-11-17" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3175.html">CVE-2010-3175</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3176.html">CVE-2010-3176</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3178.html">CVE-2010-3178</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3179.html">CVE-2010-3179</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3180.html">CVE-2010-3180</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3182.html">CVE-2010-3182</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3183.html">CVE-2010-3183</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3765.html">CVE-2010-3765</cve>
                <bugzilla href="http://bugzilla.redhat.com/642272" id="642272">CVE-2010-3176 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642275" id="642275">CVE-2010-3175 Mozilla miscellaneous memory safety hazards</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642277" id="642277">CVE-2010-3179 Mozilla buffer overflow and memory corruption using document.write</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642283" id="642283">CVE-2010-3180 Mozilla use-after-free error in nsBarProp</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642286" id="642286">CVE-2010-3183 Mozilla dangling pointer vulnerability in LookupGetterOrSetter</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642294" id="642294">CVE-2010-3178 Mozilla cross-site information disclosure via modal calls</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642300" id="642300">CVE-2010-3182 Mozilla unsafe library loading flaw</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/646997" id="646997">CVE-2010-3765 Firefox race condition flaw (MFSA 2010-73)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100896005" comment="thunderbird is earlier than 0:3.1.6-1.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100896006" comment="thunderbird is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100898" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0898: kvm security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0898-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0898.html" />
          <reference source="CVE" ref_id="CVE-2010-3698" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3698.html" />
    
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. KVM is a Linux kernel module built for
the standard Red Hat Enterprise Linux kernel.

A flaw was found in the way QEMU-KVM handled the reloading of fs and gs
segment registers when they had invalid selectors. A privileged host user
with access to "/dev/kvm" could use this flaw to crash the host (denial of
service). (CVE-2010-3698)

All KVM users should upgrade to these updated packages, which contain a
backported patch to correct this issue. Note: The procedure in the Solution
section must be performed before this update will take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-06" />
        <updated date="2010-12-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3698.html">CVE-2010-3698</cve>
                <bugzilla href="http://bugzilla.redhat.com/639879" id="639879">CVE-2010-3698 kvm: invalid selector in fs/gs causes kernel panic</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100898004" comment="kvm-qemu-img is earlier than 0:83-164.el5_5.25" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088009" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100898002" comment="kvm is earlier than 0:83-164.el5_5.25" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088003" comment="kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100898006" comment="kmod-kvm is earlier than 0:83-164.el5_5.25" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088007" comment="kmod-kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100898008" comment="kvm-tools is earlier than 0:83-164.el5_5.25" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088005" comment="kvm-tools is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100908" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0908: postgresql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0908-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0908.html" />
          <reference source="CVE" ref_id="CVE-2010-3433" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3433.html" />
    
    <description>PostgreSQL is an advanced object-relational database management system
(DBMS). PL/Perl and PL/Tcl allow users to write PostgreSQL functions in the
Perl and Tcl languages. The PostgreSQL SECURITY DEFINER parameter, which
can be used when creating a new PostgreSQL function, specifies that the
function will be executed with the privileges of the user that created it.

It was discovered that a user could utilize the features of the PL/Perl and
PL/Tcl languages to modify the behavior of a SECURITY DEFINER function
created by a different user. If the PL/Perl or PL/Tcl language was used to
implement a SECURITY DEFINER function, an authenticated database user could
use a PL/Perl or PL/Tcl script to modify the behavior of that function
during subsequent calls in the same session. This would result in the
modified or injected code also being executed with the privileges of the
user who created the SECURITY DEFINER function, possibly leading to
privilege escalation. (CVE-2010-3433)

These updated postgresql packages upgrade PostgreSQL to version 8.4.5.
Refer to the PostgreSQL Release Notes for a list of changes:

http://www.postgresql.org/docs/8.4/static/release.html

All PostgreSQL users are advised to upgrade to these updated packages,
which correct this issue. If the postgresql service is running, it will be
automatically restarted after installing this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-23" />
        <updated date="2010-11-23" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3433.html">CVE-2010-3433</cve>
                <bugzilla href="http://bugzilla.redhat.com/639371" id="639371">CVE-2010-3433 PostgreSQL (PL/Perl, PL/Tcl): SECURITY DEFINER function keyword bypass</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908019" comment="postgresql-pltcl is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908020" comment="postgresql-pltcl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908015" comment="postgresql-docs is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908016" comment="postgresql-docs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908009" comment="postgresql-devel is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908010" comment="postgresql-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908021" comment="postgresql-plperl is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908022" comment="postgresql-plperl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908013" comment="postgresql-contrib is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908014" comment="postgresql-contrib is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908007" comment="postgresql-test is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908008" comment="postgresql-test is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908017" comment="postgresql-plpython is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908018" comment="postgresql-plpython is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908023" comment="postgresql-libs is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908024" comment="postgresql-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908005" comment="postgresql is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908006" comment="postgresql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100908011" comment="postgresql-server is earlier than 0:8.4.5-1.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100908012" comment="postgresql-server is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100918" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0918: cvs security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0918-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0918.html" />
          <reference source="CVE" ref_id="CVE-2010-3846" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3846.html" />
    
    <description>Concurrent Version System (CVS) is a version control system that can record
the history of your files.

An array index error, leading to a heap-based buffer overflow, was found in
the way CVS applied certain delta fragment changes from input files in the
RCS (Revision Control System file) format. If an attacker in control of a
CVS repository stored a specially-crafted RCS file in that repository, and
then tricked a remote victim into checking out (updating their CVS
repository tree) a revision containing that file, it could lead to
arbitrary code execution with the privileges of the CVS server process
on the system hosting the CVS repository. (CVE-2010-3846)

Red Hat would like to thank Ralph Loader for reporting this issue.

All users of cvs are advised to upgrade to this updated package, which
contains a backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-29" />
        <updated date="2010-11-29" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3846.html">CVE-2010-3846</cve>
                <bugzilla href="http://bugzilla.redhat.com/642146" id="642146">CVE-2010-3846 cvs: Heap-based buffer overflow by applying RCS file changes</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100918005" comment="cvs is earlier than 0:1.11.23-11.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100918006" comment="cvs is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100919" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0919: php security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0919-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0919.html" />
          <reference source="CVE" ref_id="CVE-2009-5016" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-5016.html" />
          <reference source="CVE" ref_id="CVE-2010-0397" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0397.html" />
          <reference source="CVE" ref_id="CVE-2010-1128" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1128.html" />
          <reference source="CVE" ref_id="CVE-2010-1917" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1917.html" />
          <reference source="CVE" ref_id="CVE-2010-2531" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2531.html" />
          <reference source="CVE" ref_id="CVE-2010-3065" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3065.html" />
          <reference source="CVE" ref_id="CVE-2010-3870" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3870.html" />
    
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

An input validation flaw was discovered in the PHP session serializer. If a
PHP script generated session variable names from untrusted user input, a
remote attacker could use this flaw to inject an arbitrary variable into
the PHP session. (CVE-2010-3065)

An information leak flaw was discovered in the PHP var_export() function
implementation. If some fatal error occurred during the execution of this
function (such as the exhaustion of memory or script execution time limit),
part of the function's output was sent to the user as script output,
possibly leading to the disclosure of sensitive information.
(CVE-2010-2531)

A numeric truncation error and an input validation flaw were found in the
way the PHP utf8_decode() function decoded partial multi-byte sequences
for some multi-byte encodings, sending them to output without them being
escaped. An attacker could use these flaws to perform a cross-site
scripting attack. (CVE-2009-5016, CVE-2010-3870)

It was discovered that the PHP lcg_value() function used insufficient
entropy to seed the pseudo-random number generator. A remote attacker could
possibly use this flaw to predict values returned by the function, which
are used to generate session identifiers by default. This update changes
the function's implementation to use more entropy during seeding.
(CVE-2010-1128)

It was discovered that the PHP fnmatch() function did not restrict the
length of the pattern argument. A remote attacker could use this flaw to
crash the PHP interpreter where a script used fnmatch() on untrusted
matching patterns. (CVE-2010-1917)

A NULL pointer dereference flaw was discovered in the PHP XML-RPC
extension. A malicious XML-RPC client or server could use this flaw to
crash the PHP interpreter via a specially-crafted XML-RPC request.
(CVE-2010-0397)

All php users should upgrade to these updated packages, which contain
backported patches to resolve these issues. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-29" />
        <updated date="2010-11-29" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-5016.html">CVE-2009-5016</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0397.html">CVE-2010-0397</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1128.html">CVE-2010-1128</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1917.html">CVE-2010-1917</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2531.html">CVE-2010-2531</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3065.html">CVE-2010-3065</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3870.html">CVE-2010-3870</cve>
                <bugzilla href="http://bugzilla.redhat.com/573779" id="573779">CVE-2010-0397 php: NULL pointer dereference in XML-RPC extension</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/577582" id="577582">CVE-2010-1128 php: LCG entropy weakness</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/617232" id="617232">CVE-2010-1917 php: fnmatch long pattern stack memory exhaustion (MOPS-2010-021)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/617673" id="617673">CVE-2010-2531 php: information leak vulnerability in var_export()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/619030" id="619030">CVE-2010-3065 php: session serializer session data injection vulnerability (MOPS-2010-060)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/649056" id="649056">CVE-2010-3870 php: XSS mitigation bypass via utf8_decode()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/652836" id="652836">CVE-2009-5016 php: XSS and SQL injection bypass via crafted overlong UTF-8 encoded string</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919036" comment="php-common is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040027" comment="php-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919026" comment="php-soap is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040037" comment="php-soap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919018" comment="php-odbc is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040017" comment="php-odbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919012" comment="php-gd is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040039" comment="php-gd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919004" comment="php-mysql is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040021" comment="php-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919002" comment="php is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040003" comment="php is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919010" comment="php-xmlrpc is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040011" comment="php-xmlrpc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919030" comment="php-cli is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040029" comment="php-cli is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919034" comment="php-mbstring is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040019" comment="php-mbstring is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919032" comment="php-pgsql is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040025" comment="php-pgsql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919014" comment="php-xml is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040015" comment="php-xml is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919024" comment="php-dba is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040035" comment="php-dba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919006" comment="php-devel is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040033" comment="php-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919038" comment="php-bcmath is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040031" comment="php-bcmath is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919022" comment="php-ncurses is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040007" comment="php-ncurses is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919020" comment="php-imap is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040023" comment="php-imap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919008" comment="php-snmp is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040005" comment="php-snmp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919028" comment="php-ldap is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040009" comment="php-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919016" comment="php-pdo is earlier than 0:5.1.6-27.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040013" comment="php-pdo is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919051" comment="php-odbc is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040048" comment="php-odbc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919045" comment="php-gd is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040062" comment="php-gd is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919055" comment="php-mysql is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040050" comment="php-mysql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919041" comment="php is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040042" comment="php is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919057" comment="php-xmlrpc is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040060" comment="php-xmlrpc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919063" comment="php-mbstring is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040069" comment="php-mbstring is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919047" comment="php-pgsql is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040044" comment="php-pgsql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919059" comment="php-devel is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040046" comment="php-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919065" comment="php-snmp is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040075" comment="php-snmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919061" comment="php-ncurses is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040065" comment="php-ncurses is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919043" comment="php-imap is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040052" comment="php-imap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919053" comment="php-pear is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040058" comment="php-pear is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919067" comment="php-domxml is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040067" comment="php-domxml is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100919049" comment="php-ldap is earlier than 0:4.3.9-3.31" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100040054" comment="php-ldap is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100923" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0923: dhcp security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0923-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0923.html" />
          <reference source="CVE" ref_id="CVE-2010-3611" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3611.html" />
    
    <description>The Dynamic Host Configuration Protocol (DHCP) is a protocol that allows
individual devices on an IP network to get their own network configuration
information, including an IP address, a subnet mask, and a broadcast
address. DHCPv6 is the DHCP protocol version for IPv6 networks.

A NULL pointer dereference flaw was discovered in the way the dhcpd daemon
parsed DHCPv6 packets. A remote attacker could use this flaw to crash dhcpd
via a specially-crafted DHCPv6 packet, if dhcpd was running as a DHCPv6
server. (CVE-2010-3611)

Users running dhcpd as a DHCPv6 server should upgrade to these updated
packages, which contain a backported patch to correct this issue. After
installing this update, all DHCP servers will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-30" />
        <updated date="2010-11-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3611.html">CVE-2010-3611</cve>
                <bugzilla href="http://bugzilla.redhat.com/649877" id="649877">CVE-2010-3611 dhcp: NULL pointer dereference crash via crafted DHCPv6 packet</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100923009" comment="dhcp-devel is earlier than 12:4.1.1-12.P1.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100923010" comment="dhcp-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100923007" comment="dhclient is earlier than 12:4.1.1-12.P1.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100923008" comment="dhclient is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100923005" comment="dhcp is earlier than 12:4.1.1-12.P1.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100923006" comment="dhcp is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100924" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0924: wireshark security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0924-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0924.html" />
          <reference source="CVE" ref_id="CVE-2010-3445" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3445.html" />
          <reference source="CVE" ref_id="CVE-2010-4300" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4300.html" />
    
    <description>Wireshark is a program for monitoring network traffic. Wireshark was
previously known as Ethereal.

A heap-based buffer overflow flaw was found in the Wireshark Local Download
Sharing Service (LDSS) dissector. If Wireshark read a malformed packet off
a network or opened a malicious dump file, it could crash or, possibly,
execute arbitrary code as the user running Wireshark. (CVE-2010-4300)

A denial of service flaw was found in Wireshark. Wireshark could crash or
stop responding if it read a malformed packet off a network, or opened a
malicious dump file. (CVE-2010-3445)

Users of Wireshark should upgrade to these updated packages, which contain
Wireshark version 1.2.13, and resolve these issues. All running instances
of Wireshark must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-30" />
        <updated date="2010-11-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3445.html">CVE-2010-3445</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4300.html">CVE-2010-4300</cve>
                <bugzilla href="http://bugzilla.redhat.com/639486" id="639486">CVE-2010-3445 wireshark: stack overflow in BER dissector</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/656456" id="656456">CVE-2010-4300 Wireshark: Heap-based buffer overflow in LDSS dissector</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100924009" comment="wireshark-devel is earlier than 0:1.2.13-1.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100924010" comment="wireshark-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100924005" comment="wireshark is earlier than 0:1.2.13-1.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100924006" comment="wireshark is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100924007" comment="wireshark-gnome is earlier than 0:1.2.13-1.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100924008" comment="wireshark-gnome is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100925" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0925: krb5 security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0925-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0925.html" />
          <reference source="CVE" ref_id="CVE-2010-1323" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1323.html" />
          <reference source="CVE" ref_id="CVE-2010-1324" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1324.html" />
          <reference source="CVE" ref_id="CVE-2010-4020" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4020.html" />
    
    <description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other using symmetric encryption and a
trusted third party, the Key Distribution Center (KDC).

Multiple checksum validation flaws were discovered in the MIT Kerberos
implementation. A remote attacker could use these flaws to tamper with
certain Kerberos protocol packets and, possibly, bypass authentication or
authorization mechanisms and escalate their privileges. (CVE-2010-1323,
CVE-2010-1324, CVE-2010-4020)

Red Hat would like to thank the MIT Kerberos Team for reporting these
issues.

This update also fixes the following bug:

* When attempting to perform PKINIT pre-authentication, if the client had
more than one possible candidate certificate the client could fail to
select the certificate and key to use. This usually occurred if certificate
selection was configured to use the value of the keyUsage extension, or if
any of the candidate certificates did not contain a subjectAltName
extension. Consequently, the client attempted to perform pre-authentication
using a different (usually password-based) mechanism. (BZ#644825)

All krb5 users should upgrade to these updated packages, which contain
backported patches to correct these issues. After installing the updated
packages, the krb5kdc daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-30" />
        <updated date="2010-11-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1323.html">CVE-2010-1323</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1324.html">CVE-2010-1324</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4020.html">CVE-2010-4020</cve>
                <bugzilla href="http://bugzilla.redhat.com/644825" id="644825">'kinit' with smart card login fails to authenticate to the kdc using the cert and its private key.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/648674" id="648674">CVE-2010-1324 krb5: multiple checksum handling vulnerabilities (MITKRB5-SA-2010-007)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/648734" id="648734">CVE-2010-1323 krb5: incorrect acceptance of certain checksums (MITKRB5-SA-2010-007)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/648735" id="648735">CVE-2010-4020 krb5: krb5 may accept authdata checksums with low-entropy derived keys (MITKRB5-SA-2010-007)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100925011" comment="krb5-pkinit-openssl is earlier than 0:1.8.2-3.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863010" comment="krb5-pkinit-openssl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100925009" comment="krb5-libs is earlier than 0:1.8.2-3.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863018" comment="krb5-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100925015" comment="krb5-devel is earlier than 0:1.8.2-3.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863014" comment="krb5-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100925013" comment="krb5-server is earlier than 0:1.8.2-3.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863012" comment="krb5-server is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100925007" comment="krb5-server-ldap is earlier than 0:1.8.2-3.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863008" comment="krb5-server-ldap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100925005" comment="krb5 is earlier than 0:1.8.2-3.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863006" comment="krb5 is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100925017" comment="krb5-workstation is earlier than 0:1.8.2-3.el6_0.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100863016" comment="krb5-workstation is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100926" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0926: krb5 security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0926-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0926.html" />
          <reference source="CVE" ref_id="CVE-2010-1323" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1323.html" />
    
    <description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other using symmetric encryption and a
trusted third party, the Key Distribution Center (KDC).

Multiple checksum validation flaws were discovered in the MIT Kerberos
implementation. A remote attacker could use these flaws to tamper with
certain Kerberos protocol packets and, possibly, bypass authentication
mechanisms in certain configurations using Single-use Authentication
Mechanisms. (CVE-2010-1323)

Red Hat would like to thank the MIT Kerberos Team for reporting these
issues.

All krb5 users should upgrade to these updated packages, which contain a
backported patch to correct these issues. After installing the updated
packages, the krb5kdc daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-11-30" />
        <updated date="2010-11-30" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1323.html">CVE-2010-1323</cve>
                <bugzilla href="http://bugzilla.redhat.com/648734" id="648734">CVE-2010-1323 krb5: incorrect acceptance of certain checksums (MITKRB5-SA-2010-007)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926008" comment="krb5-libs is earlier than 0:1.6.1-36.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029007" comment="krb5-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926010" comment="krb5-devel is earlier than 0:1.6.1-36.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029005" comment="krb5-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926004" comment="krb5-server is earlier than 0:1.6.1-36.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029011" comment="krb5-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926002" comment="krb5 is earlier than 0:1.6.1-36.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029003" comment="krb5 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926006" comment="krb5-workstation is earlier than 0:1.6.1-36.el5_5.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029009" comment="krb5-workstation is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926015" comment="krb5-libs is earlier than 0:1.3.4-62.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029016" comment="krb5-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926019" comment="krb5-devel is earlier than 0:1.3.4-62.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029018" comment="krb5-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926017" comment="krb5-server is earlier than 0:1.3.4-62.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029020" comment="krb5-server is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926013" comment="krb5 is earlier than 0:1.3.4-62.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029014" comment="krb5 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100926021" comment="krb5-workstation is earlier than 0:1.3.4-62.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100029022" comment="krb5-workstation is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100934" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0934: acroread security update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
           <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0934-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0934.html" />
          <reference source="CVE" ref_id="CVE-2010-3654" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3654.html" />
          <reference source="CVE" ref_id="CVE-2010-4091" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4091.html" />
    
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes two vulnerabilities in Adobe Reader. These
vulnerabilities are detailed on the Adobe security page APSB10-28, listed
in the References section. A specially-crafted PDF file could cause Adobe
Reader to crash or, potentially, execute arbitrary code as the user running
Adobe Reader when opened. (CVE-2010-3654, CVE-2010-4091)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 9.4.1, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-01" />
        <updated date="2010-12-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3654.html">CVE-2010-3654</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4091.html">CVE-2010-4091</cve>
                <bugzilla href="http://bugzilla.redhat.com/647525" id="647525">CVE-2010-3654 acroread/flash-plugin: critical vulnerablility (APSA10-05, APSB10-26)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/651133" id="651133">CVE-2010-4091 acroread: remote DoS or possible arbitrary code execution via EScript.api plugin</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100934004" comment="acroread-plugin is earlier than 0:9.4.1-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100934002" comment="acroread is earlier than 0:9.4.1-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100037003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100934012" comment="acroread-plugin is earlier than 0:9.4.1-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100934013" comment="acroread-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100934010" comment="acroread is earlier than 0:9.4.1-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100934011" comment="acroread is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100935" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0935: java-1.4.2-ibm security update (Moderate)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0935-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0935.html" />
          <reference source="CVE" ref_id="CVE-2010-1321" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1321.html" />
          <reference source="CVE" ref_id="CVE-2010-3574" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3574.html" />
    
    <description>The IBM 1.4.2 SR13-FP7 Java release includes the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit.

This update fixes two vulnerabilities in the IBM Java 2 Runtime Environment
and the IBM Java 2 Software Development Kit. Detailed vulnerability
descriptions are linked from the IBM "Security alerts" page, listed in the
References section. (CVE-2010-1321, CVE-2010-3574)

All users of java-1.4.2-ibm are advised to upgrade to these updated
packages, which contain the IBM 1.4.2 SR13-FP7 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-01" />
        <updated date="2010-12-01" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1321.html">CVE-2010-1321</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3574.html">CVE-2010-3574</cve>
                <bugzilla href="http://bugzilla.redhat.com/582466" id="582466">CVE-2010-1321 krb5: null pointer dereference in GSS-API library leads to DoS (MITKRB5-SA-2010-005)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642215" id="642215">CVE-2010-3574 OpenJDK HttpURLConnection incomplete TRACE permission check (6981426)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100935002" comment="java-1.4.2-ibm is earlier than 0:1.4.2.13.7-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155003" comment="java-1.4.2-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100935012" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.13.7-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155011" comment="java-1.4.2-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100935008" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.13.7-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155005" comment="java-1.4.2-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100935004" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.13.7-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155007" comment="java-1.4.2-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100935010" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.13.7-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155009" comment="java-1.4.2-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100935014" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.13.7-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155015" comment="java-1.4.2-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100935006" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.13.7-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100155013" comment="java-1.4.2-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100936" version="504" class="patch">
      <metadata>
        <title>RHSA-2010:0936: kernel security and bug fix update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0936-03" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0936.html" />
          <reference source="CVE" ref_id="CVE-2010-3432" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3432.html" />
          <reference source="CVE" ref_id="CVE-2010-3442" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3442.html" />
    
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

Security fixes:

* A flaw in sctp_packet_config() in the Linux kernel's Stream Control
Transmission Protocol (SCTP) implementation could allow a remote attacker
to cause a denial of service. (CVE-2010-3432, Important)

* A missing integer overflow check in snd_ctl_new() in the Linux kernel's
sound subsystem could allow a local, unprivileged user on a 32-bit system
to cause a denial of service or escalate their privileges. (CVE-2010-3442,
Important)

Red Hat would like to thank Dan Rosenberg for reporting CVE-2010-3442.

Bug fixes:

* Forward time drift was observed on virtual machines using PM
timer-based kernel tick accounting and running on KVM or the Microsoft
Hyper-V Server hypervisor. Virtual machines that were booted with the
divider=x kernel parameter set to a value greater than 1 and that showed
the following in the kernel boot messages were subject to this issue:

time.c: Using PM based timekeeping

Fine grained accounting for the PM timer is introduced which eliminates
this issue. However, this fix uncovered a bug in the Xen hypervisor,
possibly causing backward time drift. If this erratum is installed in Xen
HVM guests that meet the aforementioned conditions, it is recommended that
the host use kernel-xen-2.6.18-194.26.1.el5 or newer, which includes a fix
(BZ#641915) for the backward time drift. (BZ#629237)

* With multipath enabled, systems would occasionally halt when the
do_cciss_request function was used. This was caused by wrongly-generated
requests. Additional checks have been added to avoid the aforementioned
issue. (BZ#640193)

* A Sun X4200 system equipped with a QLogic HBA spontaneously rebooted and
logged a Hyper-Transport Sync Flood Error to the system event log. A
Maximum Memory Read Byte Count restriction was added to fix this bug.
(BZ#640919)

* For an active/backup bonding network interface with VLANs on top of it,
when a link failed over, it took a minute for the multicast domain to be
rejoined. This was caused by the driver not sending any IGMP join packets.
The driver now sends IGMP join packets and the multicast domain is rejoined
immediately. (BZ#641002)

* Replacing a disk and trying to rebuild it afterwards caused the system to
panic. When a domain validation request for a hot plugged drive was sent,
the mptscsi driver did not validate its existence. This could result in the
driver accessing random memory and causing the crash. A check has been
added that describes the newly-added device and reloads the iocPg3 data
from the firmware if needed. (BZ#641137)

* An attempt to create a VLAN interface on a bond of two bnx2 adapters in
two switch configurations resulted in a soft lockup after a few seconds.
This was caused by an incorrect use of a bonding pointer. With this update,
soft lockups no longer occur and creating a VLAN interface works as
expected. (BZ#641254)

* Erroneous pointer checks could have caused a kernel panic. This was due
to a critical value not being copied when a network buffer was duplicated
and consumed by multiple portions of the kernel's network stack. Fixing the
copy operation resolved this bug. (BZ#642746)

* A typo in a variable name caused it to be dereferenced in either mkdir()
or create() which could cause a kernel panic. (BZ#643342)

* SCSI high level drivers can submit SCSI commands which would never be
completed when the device was offline. This was caused by a missing
callback for the request to complete the given command. SCSI requests are
now terminated by calling their callback when a device is offline.
(BZ#644816)

* A kernel panic could have occurred on systems due to a recursive lock in
the 3c59x driver. Recursion is now avoided and this kernel panic no longer
occurs. (BZ#648407)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-01" />
        <updated date="2010-12-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3432.html">CVE-2010-3432</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3442.html">CVE-2010-3442</cve>
                <bugzilla href="http://bugzilla.redhat.com/629237" id="629237">time drift with VXTIME_PMTMR mode in case of early / short real ticks [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/637675" id="637675">CVE-2010-3432 kernel: sctp: do not reset the packet during sctp_packet_config</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/638478" id="638478">CVE-2010-3442 kernel: prevent heap corruption in snd_ctl_new()</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640193" id="640193">RHEL 4.8: With multipath enabled, system occasionally halts in do_cciss_request [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/640919" id="640919">Work around HyperTransport Sync Flood Error on Sun X4200 with qla2xxx [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641002" id="641002">Bonded interface doesn't issue IGMP report (join) on slave interface during failover [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641137" id="641137">mptbase: panic with domain validation while rebuilding after the disk is replaced. [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/641254" id="641254">[RHEL4.8.z] soft lockup on vlan with bonding in balance-alb mode [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642746" id="642746">RHEL4.8 panic in netif_receive_skb [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/643342" id="643342">kernel: security: testing the wrong variable in create_by_name() [rhel-4.9] [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/644816" id="644816">scsi_do_req() submitted commands (tape) never complete when device goes offline [rhel-4.8.z]</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/648407" id="648407">Kernel panic due to recursive lock in 3c59x driver. [rhel-4.8.z]</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936002" comment="kernel is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020003" comment="kernel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936022" comment="kernel-doc is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020023" comment="kernel-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936004" comment="kernel-devel is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020005" comment="kernel-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936006" comment="kernel-smp-devel is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020007" comment="kernel-smp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936020" comment="kernel-hugemem is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020019" comment="kernel-hugemem is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936012" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020011" comment="kernel-largesmp-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936010" comment="kernel-largesmp is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020009" comment="kernel-largesmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936014" comment="kernel-xenU is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020013" comment="kernel-xenU is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936008" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020015" comment="kernel-xenU-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936018" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020021" comment="kernel-hugemem-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100936016" comment="kernel-smp is earlier than 0:2.6.9-89.33.1.EL" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100020017" comment="kernel-smp is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100945" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0945: quagga security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0945-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0945.html" />
          <reference source="CVE" ref_id="CVE-2010-2948" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2948.html" />
          <reference source="CVE" ref_id="CVE-2010-2949" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2949.html" />
    
    <description>Quagga is a TCP/IP based routing software suite. The Quagga bgpd daemon
implements the BGP (Border Gateway Protocol) routing protocol.

A stack-based buffer overflow flaw was found in the way the Quagga bgpd
daemon processed certain BGP Route Refresh (RR) messages. A configured BGP
peer could send a specially-crafted BGP message, causing bgpd on a target
system to crash or, possibly, execute arbitrary code with the privileges of
the user running bgpd. (CVE-2010-2948)

Note: On Red Hat Enterprise Linux 6 it is not possible to exploit
CVE-2010-2948 to run arbitrary code as the overflow is blocked by
FORTIFY_SOURCE.

A NULL pointer dereference flaw was found in the way the Quagga bgpd daemon
parsed the paths of autonomous systems (AS). A configured BGP peer could
crash bgpd on a target system via a specially-crafted BGP message.
(CVE-2010-2949)

Users of quagga should upgrade to these updated packages, which contain
backported patches to correct these issues. After installing the updated
packages, the bgpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-06" />
        <updated date="2010-12-06" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2948.html">CVE-2010-2948</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2949.html">CVE-2010-2949</cve>
                <bugzilla href="http://bugzilla.redhat.com/626783" id="626783">CVE-2010-2948 Quagga (bgpd): Stack buffer overflow by processing certain Route-Refresh messages</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/626795" id="626795">CVE-2010-2949 Quagga (bgpd): DoS (crash) while processing certain BGP update AS path messages</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100945009" comment="quagga-devel is earlier than 0:0.99.15-5.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100945010" comment="quagga-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100945007" comment="quagga-contrib is earlier than 0:0.99.15-5.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100945008" comment="quagga-contrib is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100945005" comment="quagga is earlier than 0:0.99.15-5.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100945006" comment="quagga is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100950" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0950: apr-util security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0950-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0950.html" />
          <reference source="CVE" ref_id="CVE-2010-1623" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1623.html" />
    
    <description>The Apache Portable Runtime (APR) is a portability library used by the
Apache HTTP Server and other projects. apr-util is a library which provides
additional utility interfaces for APR; including support for XML parsing,
LDAP, database interfaces, URI parsing, and more.

It was found that certain input could cause the apr-util library to
allocate more memory than intended in the apr_brigade_split_line()
function. An attacker able to provide input in small chunks to an
application using the apr-util library (such as httpd) could possibly use
this flaw to trigger high memory consumption. (CVE-2010-1623)

All apr-util users should upgrade to these updated packages, which contain
a backported patch to correct this issue. Applications using the apr-util
library, such as httpd, must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-07" />
        <updated date="2010-12-07" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1623.html">CVE-2010-1623</cve>
                <bugzilla href="http://bugzilla.redhat.com/640281" id="640281">CVE-2010-1623 apr-util: high memory consumption in apr_brigade_split_line()</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950008" comment="apr-util-mysql is earlier than 0:1.2.7-11.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950009" comment="apr-util-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950002" comment="apr-util is earlier than 0:1.2.7-11.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950003" comment="apr-util is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950006" comment="apr-util-devel is earlier than 0:1.2.7-11.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950007" comment="apr-util-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950004" comment="apr-util-docs is earlier than 0:1.2.7-11.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950005" comment="apr-util-docs is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950024" comment="apr-util-pgsql is earlier than 0:1.3.9-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950025" comment="apr-util-pgsql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950022" comment="apr-util-sqlite is earlier than 0:1.3.9-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950023" comment="apr-util-sqlite is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950020" comment="apr-util-odbc is earlier than 0:1.3.9-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950021" comment="apr-util-odbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950018" comment="apr-util-mysql is earlier than 0:1.3.9-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950019" comment="apr-util-mysql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950014" comment="apr-util is earlier than 0:1.3.9-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950015" comment="apr-util is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950026" comment="apr-util-ldap is earlier than 0:1.3.9-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950027" comment="apr-util-ldap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950016" comment="apr-util-devel is earlier than 0:1.3.9-3.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950017" comment="apr-util-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950029" comment="apr-util is earlier than 0:0.9.4-22.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950030" comment="apr-util is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100950031" comment="apr-util-devel is earlier than 0:0.9.4-22.el4_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100950032" comment="apr-util-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100966" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0966: firefox security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
           <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0966-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0966.html" />
          <reference source="CVE" ref_id="CVE-2010-3766" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3766.html" />
          <reference source="CVE" ref_id="CVE-2010-3767" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3767.html" />
          <reference source="CVE" ref_id="CVE-2010-3768" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3768.html" />
          <reference source="CVE" ref_id="CVE-2010-3770" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3770.html" />
          <reference source="CVE" ref_id="CVE-2010-3771" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3771.html" />
          <reference source="CVE" ref_id="CVE-2010-3772" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3772.html" />
          <reference source="CVE" ref_id="CVE-2010-3773" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3773.html" />
          <reference source="CVE" ref_id="CVE-2010-3774" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3774.html" />
          <reference source="CVE" ref_id="CVE-2010-3775" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3775.html" />
          <reference source="CVE" ref_id="CVE-2010-3776" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3776.html" />
          <reference source="CVE" ref_id="CVE-2010-3777" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3777.html" />
    
    <description>Mozilla Firefox is an open source web browser.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2010-3766, CVE-2010-3767, CVE-2010-3772, CVE-2010-3776,
CVE-2010-3777)

A flaw was found in the way Firefox handled malformed JavaScript. A website
with an object containing malicious JavaScript could cause Firefox to
execute that JavaScript with the privileges of the user running Firefox.
(CVE-2010-3771)

This update adds support for the Sanitiser for OpenType (OTS) library to
Firefox. This library helps prevent potential exploits in malformed
OpenType fonts by verifying the font file prior to use. (CVE-2010-3768)

A flaw was found in the way Firefox loaded Java LiveConnect scripts.
Malicious web content could load a Java LiveConnect script in a way that
would result in the plug-in object having elevated privileges, allowing it
to execute Java code with the privileges of the user running Firefox.
(CVE-2010-3775)

It was found that the fix for CVE-2010-0179 was incomplete when the Firebug
add-on was used. If a user visited a website containing malicious
JavaScript while the Firebug add-on was enabled, it could cause Firefox to
execute arbitrary JavaScript with the privileges of the user running
Firefox. (CVE-2010-3773)

A flaw was found in the way Firefox presented the location bar to users. A
malicious website could trick a user into thinking they are visiting the
site reported by the location bar, when the page is actually content
controlled by an attacker. (CVE-2010-3774)

A cross-site scripting (XSS) flaw was found in the Firefox x-mac-arabic,
x-mac-farsi, and x-mac-hebrew character encodings. Certain characters were
converted to angle brackets when displayed. If server-side script filtering
missed these cases, it could result in Firefox executing JavaScript code
with the permissions of a different website. (CVE-2010-3770)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.6.13. You can find a link to the Mozilla
advisories in the References section of this erratum.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.6.13, which corrects these issues. After installing the
update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-09" />
        <updated date="2010-12-09" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3766.html">CVE-2010-3766</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3767.html">CVE-2010-3767</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3768.html">CVE-2010-3768</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3770.html">CVE-2010-3770</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3771.html">CVE-2010-3771</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3772.html">CVE-2010-3772</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3773.html">CVE-2010-3773</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3774.html">CVE-2010-3774</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3775.html">CVE-2010-3775</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3776.html">CVE-2010-3776</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3777.html">CVE-2010-3777</cve>
                <bugzilla href="http://bugzilla.redhat.com/660408" id="660408">CVE-2010-3776 Mozilla miscellaneous memory safety hazards (MFSA 2010-74)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660415" id="660415">CVE-2010-3777 Mozilla miscellaneous memory safety hazards (MFSA 2010-74)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660417" id="660417">CVE-2010-3771 Mozilla Chrome privilege escalation with window.open and &lt;isindex> element (MFSA 2010-76)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660419" id="660419">CVE-2010-3772 Mozilla crash and remote code execution using HTML tags inside a XUL tree (MFSA 2010-77)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660420" id="660420">CVE-2010-3768 Mozilla add support for OTS font sanitizer (MFSA 2010-78)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660422" id="660422">CVE-2010-3775 Mozilla Java security bypass from LiveConnect loaded via data: URL meta refresh (MFSA 2010-79)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660429" id="660429">CVE-2010-3766 Mozilla use-after-free error with nsDOMAttribute MutationObserver (MFSA 2010-80)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660431" id="660431">CVE-2010-3767 Mozilla integer overflow vulnerability in NewIdArray (MFSA 2010-81)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660435" id="660435">CVE-2010-3773 Mozilla incomplete fix for CVE-2010-0179 (MFSA 2010-82)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660438" id="660438">CVE-2010-3774 Mozilla location bar SSL spoofing using network error page (MFSA 2010-83)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660439" id="660439">CVE-2010-3770 Mozilla XSS hazard in multiple character encodings (MFSA 2010-84)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100966002" comment="xulrunner is earlier than 0:1.9.2.13-3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112003" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100966004" comment="xulrunner-devel is earlier than 0:1.9.2.13-3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112005" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100966006" comment="firefox is earlier than 0:3.6.13-2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112009" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100966012" comment="xulrunner is earlier than 0:1.9.2.13-3.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100861006" comment="xulrunner is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100966014" comment="xulrunner-devel is earlier than 0:1.9.2.13-3.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100861008" comment="xulrunner-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100966016" comment="firefox is earlier than 0:3.6.13-2.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100861010" comment="firefox is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100966019" comment="firefox is earlier than 0:3.6.13-3.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100112012" comment="firefox is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100967" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0967: seamonkey security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0967-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0967.html" />
          <reference source="CVE" ref_id="CVE-2010-3767" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3767.html" />
          <reference source="CVE" ref_id="CVE-2010-3772" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3772.html" />
          <reference source="CVE" ref_id="CVE-2010-3775" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3775.html" />
          <reference source="CVE" ref_id="CVE-2010-3776" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3776.html" />
    
    <description>SeaMonkey is an open source web browser, email and newsgroup client, IRC
chat client, and HTML editor.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause SeaMonkey to crash or,
potentially, execute arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2010-3767, CVE-2010-3772, CVE-2010-3776)

A flaw was found in the way SeaMonkey loaded Java LiveConnect scripts.
Malicious web content could load a Java LiveConnect script in a way that
would result in the plug-in object having elevated privileges, allowing it
to execute Java code with the privileges of the user running SeaMonkey.
(CVE-2010-3775)

All SeaMonkey users should upgrade to these updated packages, which correct
these issues. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-09" />
        <updated date="2010-12-09" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3767.html">CVE-2010-3767</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3772.html">CVE-2010-3772</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3775.html">CVE-2010-3775</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3776.html">CVE-2010-3776</cve>
                <bugzilla href="http://bugzilla.redhat.com/660408" id="660408">CVE-2010-3776 Mozilla miscellaneous memory safety hazards (MFSA 2010-74)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660419" id="660419">CVE-2010-3772 Mozilla crash and remote code execution using HTML tags inside a XUL tree (MFSA 2010-77)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660422" id="660422">CVE-2010-3775 Mozilla Java security bypass from LiveConnect loaded via data: URL meta refresh (MFSA 2010-79)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660431" id="660431">CVE-2010-3767 Mozilla integer overflow vulnerability in NewIdArray (MFSA 2010-81)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100967006" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-66.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113015" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100967008" comment="seamonkey-mail is earlier than 0:1.0.9-66.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113021" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100967002" comment="seamonkey is earlier than 0:1.0.9-66.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100967012" comment="seamonkey-devel is earlier than 0:1.0.9-66.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113007" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100967010" comment="seamonkey-chat is earlier than 0:1.0.9-66.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113017" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100967004" comment="seamonkey-js-debugger is earlier than 0:1.0.9-66.el4_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100113009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100968" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0968: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0968-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0968.html" />
          <reference source="CVE" ref_id="CVE-2010-3767" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3767.html" />
          <reference source="CVE" ref_id="CVE-2010-3772" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3772.html" />
          <reference source="CVE" ref_id="CVE-2010-3776" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3776.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the processing of malformed HTML content. HTML
containing malicious content could cause Thunderbird to crash or,
potentially, execute arbitrary code with the privileges of the user running
Thunderbird. (CVE-2010-3767, CVE-2010-3772, CVE-2010-3776)

Note: JavaScript support is disabled by default in Thunderbird. The above
issues are not exploitable unless JavaScript is enabled.

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-09" />
        <updated date="2010-12-09" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3767.html">CVE-2010-3767</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3772.html">CVE-2010-3772</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3776.html">CVE-2010-3776</cve>
                <bugzilla href="http://bugzilla.redhat.com/660408" id="660408">CVE-2010-3776 Mozilla miscellaneous memory safety hazards (MFSA 2010-74)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660419" id="660419">CVE-2010-3772 Mozilla crash and remote code execution using HTML tags inside a XUL tree (MFSA 2010-77)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660431" id="660431">CVE-2010-3767 Mozilla integer overflow vulnerability in NewIdArray (MFSA 2010-81)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_productivity</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100968002" comment="thunderbird is earlier than 0:2.0.0.24-13.el5_5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100153003" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100968005" comment="thunderbird is earlier than 0:1.5.0.12-34.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100154003" comment="thunderbird is signed with Red Hat master key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100969" version="503" class="patch">
      <metadata>
        <title>RHSA-2010:0969: thunderbird security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0969-02" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0969.html" />
          <reference source="CVE" ref_id="CVE-2010-3768" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3768.html" />
          <reference source="CVE" ref_id="CVE-2010-3776" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3776.html" />
          <reference source="CVE" ref_id="CVE-2010-3777" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3777.html" />
    
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the processing of malformed HTML content.
Malicious HTML content could cause Thunderbird to crash or, potentially,
execute arbitrary code with the privileges of the user running Thunderbird.
(CVE-2010-3776, CVE-2010-3777)

Note: JavaScript support is disabled in Thunderbird for mail messages. The
above issues are believed to not be exploitable without JavaScript.

This update adds support for the Sanitiser for OpenType (OTS) library to Thunderbird. This library helps prevent potential exploits in malformed OpenType fonts by verifying the font file prior to use. (CVE-2010-3768)

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-09" />
        <updated date="2010-12-09" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3768.html">CVE-2010-3768</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3776.html">CVE-2010-3776</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3777.html">CVE-2010-3777</cve>
                <bugzilla href="http://bugzilla.redhat.com/660408" id="660408">CVE-2010-3776 Mozilla miscellaneous memory safety hazards (MFSA 2010-74)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660415" id="660415">CVE-2010-3777 Mozilla miscellaneous memory safety hazards (MFSA 2010-74)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660420" id="660420">CVE-2010-3768 Mozilla add support for OTS font sanitizer (MFSA 2010-78)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100969005" comment="thunderbird is earlier than 0:3.1.7-3.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100896006" comment="thunderbird is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100970" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0970: exim security update (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
           <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0970-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0970.html" />
          <reference source="CVE" ref_id="CVE-2010-4344" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4344.html" />
    
    <description>Exim is a mail transport agent (MTA) developed at the University of
Cambridge for use on Unix systems connected to the Internet.

A buffer overflow flaw was discovered in Exim's internal
string_vformat() function. A remote attacker could use this flaw to
execute arbitrary code on the mail server running Exim. (CVE-2010-4344)

Note: successful exploitation would allow a remote attacker to execute
arbitrary code as root on a Red Hat Enterprise Linux 4 or 5 system that
is running the Exim mail server. An exploit for this issue is known to
exist.

For additional information regarding this flaw, along with mitigation
advice, please see the Knowledge Base article linked to in the
References section of this advisory.

Users of Exim are advised to update to these erratum packages which
contain a backported patch to correct this issue. After installing this
update, the Exim daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-10" />
        <updated date="2010-12-10" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4344.html">CVE-2010-4344</cve>
                <bugzilla href="http://bugzilla.redhat.com/661756" id="661756">CVE-2010-4344 exim remote code execution flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:rhel_eus</cpe>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100970006" comment="exim-mon is earlier than 0:4.63-5.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100970007" comment="exim-mon is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100970002" comment="exim is earlier than 0:4.63-5.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100970003" comment="exim is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100970004" comment="exim-sa is earlier than 0:4.63-5.el5_5.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100970005" comment="exim-sa is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100970011" comment="exim-mon is earlier than 0:4.43-1.RHEL4.5.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100970012" comment="exim-mon is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100970013" comment="exim-doc is earlier than 0:4.43-1.RHEL4.5.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100970014" comment="exim-doc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100970009" comment="exim is earlier than 0:4.43-1.RHEL4.5.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100970010" comment="exim is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100970015" comment="exim-sa is earlier than 0:4.43-1.RHEL4.5.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100970016" comment="exim-sa is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100975" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0975: bind security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0975-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0975.html" />
          <reference source="CVE" ref_id="CVE-2010-3613" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3613.html" />
          <reference source="CVE" ref_id="CVE-2010-3614" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3614.html" />
    
    <description>The Berkeley Internet Name Domain (BIND) is an implementation of the Domain
Name System (DNS) protocols. BIND includes a DNS server (named); a resolver
library (routines for applications to use when interfacing with DNS); and
tools for verifying that the DNS server is operating correctly.

It was discovered that named did not invalidate previously cached RRSIG
records when adding an NCACHE record for the same entry to the cache. A
remote attacker allowed to send recursive DNS queries to named could use
this flaw to crash named. (CVE-2010-3613)

It was discovered that, in certain cases, named did not properly perform
DNSSEC validation of an NS RRset for zones in the middle of a DNSKEY
algorithm rollover. This flaw could cause the validator to incorrectly
determine that the zone is insecure and not protected by DNSSEC.
(CVE-2010-3614)

All BIND users are advised to upgrade to these updated packages, which
contain a backported patch to resolve these issues. After installing the
update, the BIND daemon (named) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-13" />
        <updated date="2010-12-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3613.html">CVE-2010-3613</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3614.html">CVE-2010-3614</cve>
                <bugzilla href="http://bugzilla.redhat.com/658974" id="658974">CVE-2010-3613 bind: failure to clear existing RRSIG records when a NO DATA is negatively cached could DoS named</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/658977" id="658977">CVE-2010-3614 bind: key algorithm rollover may mark secure answers as insecure</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100975011" comment="bind-chroot is earlier than 32:9.7.0-5.P2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100975012" comment="bind-chroot is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100975009" comment="bind-devel is earlier than 32:9.7.0-5.P2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100975010" comment="bind-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100975007" comment="bind-utils is earlier than 32:9.7.0-5.P2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100975008" comment="bind-utils is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100975013" comment="bind-sdb is earlier than 32:9.7.0-5.P2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100975014" comment="bind-sdb is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100975005" comment="bind is earlier than 32:9.7.0-5.P2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100975006" comment="bind is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100975015" comment="bind-libs is earlier than 32:9.7.0-5.P2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100975016" comment="bind-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100976" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0976: bind security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0976-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0976.html" />
          <reference source="CVE" ref_id="CVE-2010-3613" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3613.html" />
          <reference source="CVE" ref_id="CVE-2010-3614" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3614.html" />
          <reference source="CVE" ref_id="CVE-2010-3762" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3762.html" />
    
    <description>The Berkeley Internet Name Domain (BIND) is an implementation of the Domain
Name System (DNS) protocols. BIND includes a DNS server (named); a resolver
library (routines for applications to use when interfacing with DNS); and
tools for verifying that the DNS server is operating correctly.

It was discovered that named did not invalidate previously cached RRSIG
records when adding an NCACHE record for the same entry to the cache. A
remote attacker allowed to send recursive DNS queries to named could use
this flaw to crash named. (CVE-2010-3613)

A flaw was found in the DNSSEC validation code in named. If named had
multiple trust anchors configured for a zone, a response to a request for a
record in that zone with a bad signature could cause named to crash.
(CVE-2010-3762)

It was discovered that, in certain cases, named did not properly perform
DNSSEC validation of an NS RRset for zones in the middle of a DNSKEY
algorithm rollover. This flaw could cause the validator to incorrectly
determine that the zone is insecure and not protected by DNSSEC.
(CVE-2010-3614)

All BIND users are advised to upgrade to these updated packages, which
contain backported patches to resolve these issues. After installing the
update, the BIND daemon (named) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-13" />
        <updated date="2010-12-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3613.html">CVE-2010-3613</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3614.html">CVE-2010-3614</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3762.html">CVE-2010-3762</cve>
                <bugzilla href="http://bugzilla.redhat.com/640730" id="640730">CVE-2010-3762 Bind: DoS (assertion failure) via a DNS query with bad signatures</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/658974" id="658974">CVE-2010-3613 bind: failure to clear existing RRSIG records when a NO DATA is negatively cached could DoS named</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/658977" id="658977">CVE-2010-3614 bind: key algorithm rollover may mark secure answers as insecure</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100976016" comment="bind-chroot is earlier than 30:9.3.6-4.P1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062007" comment="bind-chroot is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100976012" comment="bind-devel is earlier than 30:9.3.6-4.P1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062013" comment="bind-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100976008" comment="bind-libbind-devel is earlier than 30:9.3.6-4.P1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062011" comment="bind-libbind-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100976004" comment="bind-utils is earlier than 30:9.3.6-4.P1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062017" comment="bind-utils is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100976014" comment="bind-sdb is earlier than 30:9.3.6-4.P1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062009" comment="bind-sdb is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100976002" comment="bind is earlier than 30:9.3.6-4.P1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062003" comment="bind is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100976010" comment="bind-libs is earlier than 30:9.3.6-4.P1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062005" comment="bind-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100976006" comment="caching-nameserver is earlier than 30:9.3.6-4.P1.el5_5.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100062015" comment="caching-nameserver is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100977" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0977: openssl security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0977-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0977.html" />
          <reference source="CVE" ref_id="CVE-2008-7270" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-7270.html" />
          <reference source="CVE" ref_id="CVE-2009-3245" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3245.html" />
          <reference source="CVE" ref_id="CVE-2010-4180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4180.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

A ciphersuite downgrade flaw was found in the OpenSSL SSL/TLS server code.
A remote attacker could possibly use this flaw to change the ciphersuite
associated with a cached session stored on the server, if the server
enabled the SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG option, possibly
forcing the client to use a weaker ciphersuite after resuming the session.
(CVE-2010-4180, CVE-2008-7270)

Note: With this update, setting the SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG
option has no effect and this bug workaround can no longer be enabled.

It was discovered that OpenSSL did not always check the return value of the
bn_wexpand() function. An attacker able to trigger a memory allocation
failure in that function could possibly crash an application using the
OpenSSL library and its UBSEC hardware engine support. (CVE-2009-3245)

All OpenSSL users should upgrade to these updated packages, which contain
backported patches to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-13" />
        <updated date="2010-12-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-7270.html">CVE-2008-7270</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3245.html">CVE-2009-3245</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4180.html">CVE-2010-4180</cve>
                <bugzilla href="http://bugzilla.redhat.com/570924" id="570924">CVE-2009-3245 openssl: missing bn_wexpand return value checks</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/659462" id="659462">CVE-2010-4180 openssl: NETSCAPE_REUSE_CIPHER_CHANGE_BUG ciphersuite downgrade attack</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660650" id="660650">CVE-2008-7270 openssl: NETSCAPE_REUSE_CIPHER_CHANGE_BUG downgrade-to-disabled ciphersuite attack</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100977002" comment="openssl is earlier than 0:0.9.7a-43.17.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163003" comment="openssl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100977006" comment="openssl-perl is earlier than 0:0.9.7a-43.17.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163005" comment="openssl-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100977004" comment="openssl-devel is earlier than 0:0.9.7a-43.17.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100163007" comment="openssl-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100978" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0978: openssl security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0978-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0978.html" />
          <reference source="CVE" ref_id="CVE-2008-7270" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-7270.html" />
          <reference source="CVE" ref_id="CVE-2010-4180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4180.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

A ciphersuite downgrade flaw was found in the OpenSSL SSL/TLS server code.
A remote attacker could possibly use this flaw to change the ciphersuite
associated with a cached session stored on the server, if the server
enabled the SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG option, possibly
forcing the client to use a weaker ciphersuite after resuming the session.
(CVE-2010-4180, CVE-2008-7270)

Note: With this update, setting the SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG
option has no effect and this bug workaround can no longer be enabled.

All OpenSSL users should upgrade to these updated packages, which contain a
backported patch to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-13" />
        <updated date="2010-12-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-7270.html">CVE-2008-7270</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4180.html">CVE-2010-4180</cve>
                <bugzilla href="http://bugzilla.redhat.com/659462" id="659462">CVE-2010-4180 openssl: NETSCAPE_REUSE_CIPHER_CHANGE_BUG ciphersuite downgrade attack</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660650" id="660650">CVE-2008-7270 openssl: NETSCAPE_REUSE_CIPHER_CHANGE_BUG downgrade-to-disabled ciphersuite attack</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100978002" comment="openssl is earlier than 0:0.9.8e-12.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054003" comment="openssl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100978004" comment="openssl-perl is earlier than 0:0.9.8e-12.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054005" comment="openssl-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100978006" comment="openssl-devel is earlier than 0:0.9.8e-12.el5_5.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100054007" comment="openssl-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100979" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0979: openssl security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0979-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0979.html" />
          <reference source="CVE" ref_id="CVE-2010-4180" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4180.html" />
    
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

A ciphersuite downgrade flaw was found in the OpenSSL SSL/TLS server code.
A remote attacker could possibly use this flaw to change the ciphersuite
associated with a cached session stored on the server, if the server
enabled the SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG option, possibly
forcing the client to use a weaker ciphersuite after resuming the session.
(CVE-2010-4180)

Note: With this update, setting the SSL_OP_NETSCAPE_REUSE_CIPHER_CHANGE_BUG
option has no effect and this bug workaround can no longer be enabled.

All OpenSSL users should upgrade to these updated packages, which contain a
backported patch to resolve this issue. For the update to take effect, all
services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-13" />
        <updated date="2010-12-13" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4180.html">CVE-2010-4180</cve>
                <bugzilla href="http://bugzilla.redhat.com/659462" id="659462">CVE-2010-4180 openssl: NETSCAPE_REUSE_CIPHER_CHANGE_BUG ciphersuite downgrade attack</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100979005" comment="openssl is earlier than 0:1.0.0-4.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100888006" comment="openssl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100979007" comment="openssl-static is earlier than 0:1.0.0-4.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100888010" comment="openssl-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100979011" comment="openssl-perl is earlier than 0:1.0.0-4.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100888008" comment="openssl-perl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100979009" comment="openssl-devel is earlier than 0:1.0.0-4.el6_0.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100888012" comment="openssl-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100981" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0981: HelixPlayer removal (Critical)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0981-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0981.html" />
          <reference source="CVE" ref_id="CVE-2010-2997" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2997.html" />
          <reference source="CVE" ref_id="CVE-2010-4375" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4375.html" />
          <reference source="CVE" ref_id="CVE-2010-4378" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4378.html" />
          <reference source="CVE" ref_id="CVE-2010-4379" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4379.html" />
          <reference source="CVE" ref_id="CVE-2010-4382" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4382.html" />
          <reference source="CVE" ref_id="CVE-2010-4383" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4383.html" />
          <reference source="CVE" ref_id="CVE-2010-4384" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4384.html" />
          <reference source="CVE" ref_id="CVE-2010-4385" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4385.html" />
          <reference source="CVE" ref_id="CVE-2010-4386" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4386.html" />
          <reference source="CVE" ref_id="CVE-2010-4392" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4392.html" />
    
    <description>Helix Player is a media player.

Multiple security flaws were discovered in RealPlayer. Helix Player and
RealPlayer share a common source code base; therefore, some of the flaws
discovered in RealPlayer may also affect Helix Player. Some of these flaws
could, when opening, viewing, or playing a malicious media file or stream,
lead to arbitrary code execution with the privileges of the user running
Helix Player. (CVE-2010-2997, CVE-2010-4375, CVE-2010-4378, CVE-2010-4379,
CVE-2010-4382, CVE-2010-4383, CVE-2010-4384, CVE-2010-4385, CVE-2010-4386,
CVE-2010-4392)

The Red Hat Security Response Team is unable to properly determine the
impact or fix all of these issues in Helix Player, due to the source code
for RealPlayer being unavailable.

Due to the security concerns this update removes the HelixPlayer package
from Red Hat Enterprise Linux 4. Users wishing to continue to use Helix
Player should download it directly from https://player.helixcommunity.org/</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-14" />
        <updated date="2010-12-14" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2997.html">CVE-2010-2997</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4375.html">CVE-2010-4375</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4378.html">CVE-2010-4378</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4379.html">CVE-2010-4379</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4382.html">CVE-2010-4382</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4383.html">CVE-2010-4383</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4384.html">CVE-2010-4384</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4385.html">CVE-2010-4385</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4386.html">CVE-2010-4386</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4392.html">CVE-2010-4392</cve>
                <bugzilla href="http://bugzilla.redhat.com/662772" id="662772">CVE-2010-4384 HelixPlayer multiple flaws (CVE-2010-2997, CVE-2010-4375, CVE-2010-4378, CVE-2010-4379, CVE-2010-4382, CVE-2010-4383, CVE-2010-4385, CVE-2010-4386, CVE-2010-4392, CVE-2010-4376)</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100981004" comment="HelixPlayer-uninstall is earlier than 1:1.0.6-3.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100981005" comment="HelixPlayer-uninstall is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100981002" comment="HelixPlayer is earlier than 1:1.0.6-3.el4_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100094003" comment="HelixPlayer is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100987" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0987: java-1.6.0-ibm security and bug fix update (Critical)</title>
    <affected family="unix">
            <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
           <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0987-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0987.html" />
          <reference source="CVE" ref_id="CVE-2009-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-1321" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1321.html" />
          <reference source="CVE" ref_id="CVE-2010-3541" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3541.html" />
          <reference source="CVE" ref_id="CVE-2010-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3548.html" />
          <reference source="CVE" ref_id="CVE-2010-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3549.html" />
          <reference source="CVE" ref_id="CVE-2010-3550" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3550.html" />
          <reference source="CVE" ref_id="CVE-2010-3551" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3551.html" />
          <reference source="CVE" ref_id="CVE-2010-3553" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3553.html" />
          <reference source="CVE" ref_id="CVE-2010-3555" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3555.html" />
          <reference source="CVE" ref_id="CVE-2010-3556" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3556.html" />
          <reference source="CVE" ref_id="CVE-2010-3557" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3557.html" />
          <reference source="CVE" ref_id="CVE-2010-3558" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3558.html" />
          <reference source="CVE" ref_id="CVE-2010-3560" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3560.html" />
          <reference source="CVE" ref_id="CVE-2010-3562" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3562.html" />
          <reference source="CVE" ref_id="CVE-2010-3563" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3563.html" />
          <reference source="CVE" ref_id="CVE-2010-3565" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3565.html" />
          <reference source="CVE" ref_id="CVE-2010-3566" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3566.html" />
          <reference source="CVE" ref_id="CVE-2010-3568" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3568.html" />
          <reference source="CVE" ref_id="CVE-2010-3569" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3569.html" />
          <reference source="CVE" ref_id="CVE-2010-3571" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3571.html" />
          <reference source="CVE" ref_id="CVE-2010-3572" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3572.html" />
          <reference source="CVE" ref_id="CVE-2010-3573" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3573.html" />
          <reference source="CVE" ref_id="CVE-2010-3574" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3574.html" />
    
    <description>The IBM 1.6.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment. Detailed vulnerability descriptions are linked from the IBM
"Security alerts" page, listed in the References section. (CVE-2009-3555,
CVE-2010-1321, CVE-2010-3541, CVE-2010-3548, CVE-2010-3549, CVE-2010-3550,
CVE-2010-3551, CVE-2010-3553, CVE-2010-3555, CVE-2010-3556, CVE-2010-3557,
CVE-2010-3558, CVE-2010-3560, CVE-2010-3562, CVE-2010-3563, CVE-2010-3565,
CVE-2010-3566, CVE-2010-3568, CVE-2010-3569, CVE-2010-3571, CVE-2010-3572,
CVE-2010-3573, CVE-2010-3574)

This update also fixes the following bugs:

* An error in the java-1.6.0-ibm RPM spec file caused an incorrect path to
be included in HtmlConverter, preventing it from running. (BZ#659716)

* On AMD64 and Intel 64 systems, if only the 64-bit java-1.6.0-ibm packages
were installed, IBM Java 6 Web Start was not available as an application
that could open JNLP (Java Network Launching Protocol) files. This affected
file management and web browser tools. Users had to manually open them with
the "/usr/lib/jvm/jre-1.6.0-ibm.x86_64/bin/javaws" command. This update
resolves this issue. (BZ#633341)

All users of java-1.6.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.6.0 SR9 Java release. All running instances
of IBM Java must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Critical</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-15" />
        <updated date="2010-12-15" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3555.html">CVE-2009-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1321.html">CVE-2010-1321</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3541.html">CVE-2010-3541</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3548.html">CVE-2010-3548</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3549.html">CVE-2010-3549</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3550.html">CVE-2010-3550</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3551.html">CVE-2010-3551</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3553.html">CVE-2010-3553</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3555.html">CVE-2010-3555</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3556.html">CVE-2010-3556</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3557.html">CVE-2010-3557</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3558.html">CVE-2010-3558</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3560.html">CVE-2010-3560</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3562.html">CVE-2010-3562</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3563.html">CVE-2010-3563</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3565.html">CVE-2010-3565</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3566.html">CVE-2010-3566</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3568.html">CVE-2010-3568</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3569.html">CVE-2010-3569</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3571.html">CVE-2010-3571</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3572.html">CVE-2010-3572</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3573.html">CVE-2010-3573</cve>
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3574.html">CVE-2010-3574</cve>
                <bugzilla href="http://bugzilla.redhat.com/533125" id="533125">CVE-2009-3555 TLS: MITM attacks via session renegotiation</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/582466" id="582466">CVE-2010-1321 krb5: null pointer dereference in GSS-API library leads to DoS (MITKRB5-SA-2010-005)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639876" id="639876">CVE-2010-3568 OpenJDK Deserialization Race condition (6559775)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639897" id="639897">CVE-2010-3562 OpenJDK IndexColorModel double-free (6925710)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639904" id="639904">CVE-2010-3557 OpenJDK Swing mutable static (6938813)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639909" id="639909">CVE-2010-3548 OpenJDK DNS server IP address information leak (6957564)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639920" id="639920">CVE-2010-3565 OpenJDK JPEG writeImage remote code execution (6963023)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639922" id="639922">CVE-2010-3566 OpenJDK ICC Profile remote code execution (6963489)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/639925" id="639925">CVE-2010-3569 OpenJDK Serialization inconsistencies (6966692)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642167" id="642167">CVE-2010-3553 OpenJDK Swing unsafe reflection usage (6622002)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642180" id="642180">CVE-2010-3549 OpenJDK HttpURLConnection request splitting (6952017)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642187" id="642187">CVE-2010-3551 OpenJDK local network address disclosure (6952603)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642202" id="642202">CVE-2010-3541 CVE-2010-3573 OpenJDK HttpURLConnection allows arbitrary request headers (6961084,6980004)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642215" id="642215">CVE-2010-3574 OpenJDK HttpURLConnection incomplete TRACE permission check (6981426)</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642558" id="642558">CVE-2010-3555 JDK unspecified vulnerability in Deployment component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642559" id="642559">CVE-2010-3550 JDK unspecified vulnerability in Java Web Start component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642573" id="642573">CVE-2010-3560 JDK unspecified vulnerability in Networking component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642576" id="642576">CVE-2010-3556 JDK unspecified vulnerability in 2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642585" id="642585">CVE-2010-3571 JDK unspecified vulnerability in 2D component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642589" id="642589">CVE-2010-3563 JDK unspecified vulnerability in Deployment component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642593" id="642593">CVE-2010-3558 JDK unspecified vulnerability in Java Web Start component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/642611" id="642611">CVE-2010-3572 JDK unspecified vulnerability in Sound component</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/659716" id="659716">IBM Java6 file modified</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_extras</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987010" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.9.0-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383005" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987002" comment="java-1.6.0-ibm is earlier than 1:1.6.0.9.0-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383003" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987014" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.9.0-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383011" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987008" comment="java-1.6.0-ibm-accessibility is earlier than 1:1.6.0.9.0-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383013" comment="java-1.6.0-ibm-accessibility is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987012" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.9.0-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383015" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987004" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.9.0-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383007" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987016" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.9.0-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383017" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987006" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.9.0-1jpp.3.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100383009" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987024" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.9.0-1jpp.4.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100987025" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987022" comment="java-1.6.0-ibm is earlier than 1:1.6.0.9.0-1jpp.4.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100987023" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987028" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.9.0-1jpp.4.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100987029" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987032" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.9.0-1jpp.4.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100987033" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987026" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.9.0-1jpp.4.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100987027" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987034" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.9.0-1jpp.4.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100987035" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100987030" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.9.0-1jpp.4.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100987031" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100998" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0998: kvm security and bug fix update (Low)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 5</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0998-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0998.html" />
          <reference source="CVE" ref_id="CVE-2010-3881" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3881.html" />
    
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. KVM is a Linux kernel module built for
the standard Red Hat Enterprise Linux kernel.

It was found that some structure padding and reserved fields in certain
data structures in QEMU-KVM were not initialized properly before being
copied to user-space. A privileged host user with access to "/dev/kvm"
could use this flaw to leak kernel stack memory to user-space.
(CVE-2010-3881)

Red Hat would like to thank Vasiliy Kulikov for reporting this issue.

This update also fixes the following bugs:

* The 'kvm_amd' kernel module did not initialize the TSC (Time Stamp
Counter) offset in the VMCB (Virtual Machine Control Block) correctly.
After a vCPU (virtual CPU) has been created, the TSC offset in the VMCB
should have a negative value so that the virtual machine will see TSC
values starting at zero. However, the TSC offset was set to zero and
therefore the virtual machine saw the same TSC value as the host. With this
update, the TSC offset has been updated to show the correct values.
(BZ#656984)

* Setting the boot settings of a virtual machine to, firstly, boot from PXE
and, secondly, to boot from the hard drive would result in a PXE boot loop,
that is, the virtual machine would not continue to boot from the hard drive
if the PXE boot failed. This was caused by a flaw in the 'bochs-bios' (part
of KVM) code. With this update, after a virtual machine tries to boot from
PXE and fails, it continues to boot from a hard drive if there is one
present. (BZ#659850)

* If a 64-bit Red Hat Enterprise Linux 5.5 virtual machine was migrated to
another host with a different CPU clock speed, the clock of that virtual
machine would consistently lose or gain time (approximately half a second
for every second the host is running). On machines that do not use the kvm
clock, the network time protocol daemon (ntpd) could correct the time
drifts caused by migration. However, using the pvclock caused the time to
change consistently. This was due to flaws in the save/load functions of
pvclock. With this update, the issue has been fixed and migrating a virtual
machine no longer causes time drift. (BZ#660239)

All KVM users should upgrade to these updated packages, which contain
backported patches to correct these issues. Note: The procedure in the
Solution section must be performed before this update will take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Low</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-20" />
        <updated date="2010-12-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3881.html">CVE-2010-3881</cve>
                <bugzilla href="http://bugzilla.redhat.com/649920" id="649920">CVE-2010-3881 kvm: arch/x86/kvm/x86.c: reading uninitialized stack memory</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/656984" id="656984">TSC offset of virtual machines is not initialized correctly by 'kvm_amd' kernel module.</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/659850" id="659850">If VM boot seq. is set up as nc (PXE then disk) the VM is always stuck on trying to PXE boot</bugzilla>
            <bugzilla href="http://bugzilla.redhat.com/660239" id="660239">clock drift when migrating a guest between mis-matched CPU clock speed</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100998004" comment="kvm-qemu-img is earlier than 0:83-164.el5_5.30" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088009" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100998002" comment="kvm is earlier than 0:83-164.el5_5.30" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088003" comment="kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100998008" comment="kmod-kvm is earlier than 0:83-164.el5_5.30" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088007" comment="kmod-kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100998006" comment="kvm-tools is earlier than 0:83-164.el5_5.30" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100088005" comment="kvm-tools is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20100999" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:0999: libvpx security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:0999-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-0999.html" />
          <reference source="CVE" ref_id="CVE-2010-4203" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4203.html" />
    
    <description>The libvpx packages provide the VP8 SDK, which allows the encoding and
decoding of the VP8 video codec, commonly used with the WebM multimedia
container file format.

An integer overflow flaw, leading to arbitrary memory writes, was found in
libvpx. An attacker could create a specially-crafted video encoded using
the VP8 codec that, when played by a victim with an application using
libvpx (such as Totem), would cause the application to crash or,
potentially, execute arbitrary code. (CVE-2010-4203)

All users of libvpx are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. After installing the
update, all applications using libvpx must be restarted for the changes to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-20" />
        <updated date="2010-12-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4203.html">CVE-2010-4203</cve>
                <bugzilla href="http://bugzilla.redhat.com/651213" id="651213">CVE-2010-4203 libvpx: memory corruption flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100999007" comment="libvpx-utils is earlier than 0:0.9.0-8.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100999008" comment="libvpx-utils is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100999009" comment="libvpx-devel is earlier than 0:0.9.0-8.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100999010" comment="libvpx-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100999005" comment="libvpx is earlier than 0:0.9.0-8.el6_0" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100999006" comment="libvpx is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20101000" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:1000: bind security update (Important)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 4</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:1000-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-1000.html" />
          <reference source="CVE" ref_id="CVE-2010-3613" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3613.html" />
    
    <description>The Berkeley Internet Name Domain (BIND) is an implementation of the Domain
Name System (DNS) protocols. BIND includes a DNS server (named); a resolver
library (routines for applications to use when interfacing with DNS); and
tools for verifying that the DNS server is operating correctly.

It was discovered that named did not invalidate previously cached SIG
records when adding an NCACHE record for the same entry to the cache. A
remote attacker allowed to send recursive DNS queries to named could use
this flaw to crash named. (CVE-2010-3613)

All BIND users are advised to upgrade to these updated packages, which
contain a backported patch to resolve this issue. After installing the
update, the BIND daemon (named) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Important</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-20" />
        <updated date="2010-12-20" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3613.html">CVE-2010-3613</cve>
                <bugzilla href="http://bugzilla.redhat.com/658974" id="658974">CVE-2010-3613 bind: failure to clear existing RRSIG records when a NO DATA is negatively cached could DoS named</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100002004" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101000008" comment="bind-utils is earlier than 20:9.2.4-30.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101000009" comment="bind-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101000006" comment="bind-devel is earlier than 20:9.2.4-30.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101000007" comment="bind-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101000004" comment="bind-chroot is earlier than 20:9.2.4-30.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101000005" comment="bind-chroot is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101000002" comment="bind is earlier than 20:9.2.4-30.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101000003" comment="bind is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101000010" comment="bind-libs is earlier than 20:9.2.4-30.el4_8.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101000011" comment="bind-libs is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20101002" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:1002: mod_auth_mysql security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:1002-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-1002.html" />
          <reference source="CVE" ref_id="CVE-2008-2384" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-2384.html" />
    
    <description>The mod_auth_mysql package includes an extension module for the Apache HTTP
Server, which can be used to implement web user authentication against a
MySQL database.

A flaw was found in the way mod_auth_mysql escaped certain
multibyte-encoded strings. If mod_auth_mysql was configured to use a
multibyte character set that allowed a backslash ("\") as part of the
character encodings, a remote attacker could inject arbitrary SQL commands
into a login request. (CVE-2008-2384)

Note: This flaw only affected non-default installations where
AuthMySQLCharacterSet is configured to use one of the affected multibyte
character sets. Installations that did not use the AuthMySQLCharacterSet
configuration option were not vulnerable to this flaw.

All mod_auth_mysql users are advised to upgrade to this updated package,
which contains a backported patch to correct this issue. After installing
the updated package, the httpd daemon must be restarted for the update to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-21" />
        <updated date="2010-12-21" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2008-2384.html">CVE-2008-2384</cve>
                <bugzilla href="http://bugzilla.redhat.com/480238" id="480238">CVE-2008-2384 mod_auth_mysql: character encoding SQL injection flaw</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101002005" comment="mod_auth_mysql is earlier than 1:3.0.0-11.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101002006" comment="mod_auth_mysql is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20101003" version="502" class="patch">
      <metadata>
        <title>RHSA-2010:1003: git security update (Moderate)</title>
    <affected family="unix">
            <platform>Red Hat Enterprise Linux 6</platform>
         </affected>
    <reference source="RHSA" ref_id="RHSA-2010:1003-01" ref_url="https://rhn.redhat.com/errata/RHSA-2010-1003.html" />
          <reference source="CVE" ref_id="CVE-2010-3906" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-3906.html" />
    
    <description>Git is a fast, scalable, distributed revision control system.

A cross-site scripting (XSS) flaw was found in gitweb, a simple web
interface for Git repositories. A remote attacker could perform an XSS
attack against victims by tricking them into visiting a specially-crafted
gitweb URL. (CVE-2010-3906)

All gitweb users should upgrade to these updated packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">

        <severity>Moderate</severity>

        <rights>Copyright 2010 Red Hat, Inc.</rights>
        <issued date="2010-12-21" />
        <updated date="2010-12-21" />
            <cve href="https://www.redhat.com/security/data/cve/CVE-2010-3906.html">CVE-2010-3906</cve>
                <bugzilla href="http://bugzilla.redhat.com/663609" id="663609">CVE-2010-3906 Git (gitweb): XSS due to missing escaping of HTML element attributes</bugzilla>
        <affected_cpe_list>
            <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20100842001" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842002" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842003" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20100842004" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003021" comment="git-gui is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003022" comment="git-gui is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003017" comment="gitweb is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003018" comment="gitweb is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003015" comment="perl-Git is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003016" comment="perl-Git is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003011" comment="emacs-git is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003012" comment="emacs-git is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003019" comment="git-svn is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003020" comment="git-svn is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003013" comment="git-cvs is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003014" comment="git-cvs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003009" comment="git-email is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003010" comment="git-email is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003027" comment="git-all is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003028" comment="git-all is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003007" comment="gitk is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003008" comment="gitk is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003005" comment="git is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003006" comment="git is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003025" comment="git-daemon is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003026" comment="git-daemon is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20101003023" comment="emacs-git-el is earlier than 0:1.7.1-2.el6_0.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20101003024" comment="emacs-git-el is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
</definitions>

<tests>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100002001" version="502" comment="Red Hat Enterprise Linux 5 is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100002001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100002002" version="502" comment="PyXML is earlier than 0:0.8.4-4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100002002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100002003" version="502" comment="PyXML is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100002002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100002004" version="502" comment="Red Hat Enterprise Linux 4 is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100002001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100002005" version="502" comment="PyXML is earlier than 0:0.8.3-6.el4_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100002002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100002006" version="502" comment="PyXML is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100002002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003002" version="502" comment="gd is earlier than 0:2.0.33-9.4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100003004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003003" version="502" comment="gd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003004" version="502" comment="gd-progs is earlier than 0:2.0.33-9.4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100003004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003005" version="502" comment="gd-progs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003006" version="502" comment="gd-devel is earlier than 0:2.0.33-9.4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100003004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003007" version="502" comment="gd-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003009" version="502" comment="gd is earlier than 0:2.0.28-5.4E.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100003006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003010" version="502" comment="gd is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003011" version="502" comment="gd-devel is earlier than 0:2.0.28-5.4E.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100003006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003012" version="502" comment="gd-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003013" version="502" comment="gd-progs is earlier than 0:2.0.28-5.4E.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100003006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100003014" version="502" comment="gd-progs is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100003003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100018002" version="502" comment="dbus is earlier than 0:1.1.2-12.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100018002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100018003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100018003" version="502" comment="dbus is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100018002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100018004" version="502" comment="dbus-x11 is earlier than 0:1.1.2-12.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100018003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100018003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100018005" version="502" comment="dbus-x11 is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100018003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100018006" version="502" comment="dbus-libs is earlier than 0:1.1.2-12.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100018004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100018003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100018007" version="502" comment="dbus-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100018004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100018008" version="502" comment="dbus-devel is earlier than 0:1.1.2-12.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100018005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100018003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100018009" version="502" comment="dbus-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100018005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019002" version="502" comment="kernel is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019003" version="502" comment="kernel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019004" version="502" comment="kernel-headers is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019005" version="502" comment="kernel-headers is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019006" version="502" comment="kernel-debug is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019007" version="502" comment="kernel-debug is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019008" version="502" comment="kernel-xen-devel is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019009" version="502" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019010" version="502" comment="kernel-xen is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019011" version="502" comment="kernel-xen is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019012" version="502" comment="kernel-devel is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019013" version="502" comment="kernel-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019014" version="502" comment="kernel-debug-devel is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019015" version="502" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019016" version="502" comment="kernel-kdump is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019017" version="502" comment="kernel-kdump is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019018" version="502" comment="kernel-kdump-devel is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019019" version="502" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019020" version="502" comment="kernel-PAE is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019021" version="502" comment="kernel-PAE is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019022" version="502" comment="kernel-PAE-devel is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019023" version="502" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019024" version="502" comment="kernel-doc is earlier than 0:2.6.18-164.10.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100019003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100019025" version="502" comment="kernel-doc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020002" version="502" comment="kernel is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020003" version="502" comment="kernel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020004" version="502" comment="kernel-devel is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020005" version="502" comment="kernel-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020006" version="502" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020007" version="502" comment="kernel-smp-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020008" version="502" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020009" version="502" comment="kernel-largesmp is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020010" version="502" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020011" version="502" comment="kernel-largesmp-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020012" version="502" comment="kernel-xenU is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020013" version="502" comment="kernel-xenU is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020014" version="502" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020015" version="502" comment="kernel-xenU-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020016" version="502" comment="kernel-smp is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020017" version="502" comment="kernel-smp is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020018" version="502" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020019" version="502" comment="kernel-hugemem is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020020" version="502" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020021" version="502" comment="kernel-hugemem-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020022" version="502" comment="kernel-doc is earlier than 0:2.6.9-89.0.19.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100020003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100020023" version="502" comment="kernel-doc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029002" version="503" comment="krb5 is earlier than 0:1.6.1-36.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029003" version="503" comment="krb5 is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029004" version="503" comment="krb5-devel is earlier than 0:1.6.1-36.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029005" version="503" comment="krb5-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029006" version="503" comment="krb5-libs is earlier than 0:1.6.1-36.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029007" version="503" comment="krb5-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029008" version="503" comment="krb5-workstation is earlier than 0:1.6.1-36.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029009" version="503" comment="krb5-workstation is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029010" version="503" comment="krb5-server is earlier than 0:1.6.1-36.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029011" version="503" comment="krb5-server is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029012" version="503" comment="Red Hat Enterprise Linux 3 is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100002001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029013" version="503" comment="krb5 is earlier than 0:1.2.7-71" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029014" version="503" comment="krb5 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029015" version="503" comment="krb5-libs is earlier than 0:1.2.7-71" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029016" version="503" comment="krb5-libs is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029017" version="503" comment="krb5-devel is earlier than 0:1.2.7-71" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029018" version="503" comment="krb5-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029019" version="503" comment="krb5-server is earlier than 0:1.2.7-71" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029020" version="503" comment="krb5-server is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029021" version="503" comment="krb5-workstation is earlier than 0:1.2.7-71" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029022" version="503" comment="krb5-workstation is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029024" version="503" comment="krb5 is earlier than 0:1.3.4-62.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029025" version="503" comment="krb5-workstation is earlier than 0:1.3.4-62.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029026" version="503" comment="krb5-libs is earlier than 0:1.3.4-62.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029027" version="503" comment="krb5-server is earlier than 0:1.3.4-62.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100029028" version="503" comment="krb5-devel is earlier than 0:1.3.4-62.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100029003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100029008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100037002" version="502" comment="acroread is earlier than 0:9.3-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100037002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100037003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100037003" version="502" comment="acroread is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100037002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100037004" version="502" comment="acroread-plugin is earlier than 0:9.3-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100037003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100037003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100037005" version="502" comment="acroread-plugin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100037003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039002" version="502" comment="gcc is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039003" version="502" comment="gcc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039004" version="502" comment="gcc-gfortran is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039005" version="502" comment="gcc-gfortran is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039006" version="502" comment="gcc-c++ is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039007" version="502" comment="gcc-c++ is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039008" version="502" comment="libmudflap is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039009" version="502" comment="libmudflap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039010" version="502" comment="libgcj-src is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039011" version="502" comment="libgcj-src is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039012" version="502" comment="libmudflap-devel is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039013" version="502" comment="libmudflap-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039014" version="502" comment="libstdc++-devel is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039015" version="502" comment="libstdc++-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039016" version="502" comment="libstdc++ is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039017" version="502" comment="libstdc++ is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039018" version="502" comment="gcc-objc is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039019" version="502" comment="gcc-objc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039020" version="502" comment="libobjc is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039021" version="502" comment="libobjc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039022" version="502" comment="libgcc is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039023" version="502" comment="libgcc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039024" version="502" comment="libgcj is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039025" version="502" comment="libgcj is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039026" version="502" comment="libgcj-devel is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039027" version="502" comment="libgcj-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039028" version="502" comment="gcc-java is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039029" version="502" comment="gcc-java is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039030" version="502" comment="cpp is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039031" version="502" comment="cpp is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039032" version="502" comment="libgfortran is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039033" version="502" comment="libgfortran is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039034" version="502" comment="gcc-objc++ is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039035" version="502" comment="gcc-objc++ is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039036" version="502" comment="libgnat is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039037" version="502" comment="libgnat is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039038" version="502" comment="gcc-gnat is earlier than 0:4.1.2-46.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039039" version="502" comment="gcc-gnat is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039041" version="502" comment="gcc is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039042" version="502" comment="gcc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039043" version="502" comment="libstdc++ is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039044" version="502" comment="libstdc++ is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039045" version="502" comment="gcc-c++-ppc32 is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039046" version="502" comment="gcc-c++-ppc32 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039047" version="502" comment="gcc-c++ is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039048" version="502" comment="gcc-c++ is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039049" version="502" comment="libobjc is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039050" version="502" comment="libobjc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039051" version="502" comment="libgcj-devel is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039052" version="502" comment="libgcj-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039053" version="502" comment="libstdc++-devel is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039054" version="502" comment="libstdc++-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039055" version="502" comment="gcc-gnat is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039056" version="502" comment="gcc-gnat is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039057" version="502" comment="libf2c is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039058" version="502" comment="libf2c is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039059" version="502" comment="libgnat is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039060" version="502" comment="libgnat is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039061" version="502" comment="libgcj is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039062" version="502" comment="libgcj is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039063" version="502" comment="cpp is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039064" version="502" comment="cpp is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039065" version="502" comment="libgcc is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039066" version="502" comment="libgcc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039067" version="502" comment="gcc-ppc32 is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039068" version="502" comment="gcc-ppc32 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039069" version="502" comment="gcc-java is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039070" version="502" comment="gcc-java is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039071" version="502" comment="gcc-g77 is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039072" version="502" comment="gcc-g77 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039073" version="502" comment="gcc-objc is earlier than 0:3.2.3-60" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039074" version="502" comment="gcc-objc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039076" version="502" comment="gcc4 is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039077" version="502" comment="gcc4 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039078" version="502" comment="libgcj4-devel is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039079" version="502" comment="libgcj4-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039080" version="502" comment="libgcj4-src is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039081" version="502" comment="libgcj4-src is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039082" version="502" comment="libgomp is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039083" version="502" comment="libgomp is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039084" version="502" comment="gcc4-gfortran is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039085" version="502" comment="gcc4-gfortran is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039086" version="502" comment="libmudflap-devel is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039087" version="502" comment="libmudflap-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039088" version="502" comment="libgcj4 is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039089" version="502" comment="libgcj4 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039090" version="502" comment="libgfortran is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039091" version="502" comment="libgfortran is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039092" version="502" comment="gcc4-java is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039031" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039093" version="502" comment="gcc4-java is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039031" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039094" version="502" comment="gcc4-c++ is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039095" version="502" comment="gcc4-c++ is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039096" version="502" comment="libmudflap is earlier than 0:4.1.2-44.EL4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039097" version="502" comment="libmudflap is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039098" version="502" comment="gcc is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039099" version="502" comment="gcc-c++ is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039100" version="502" comment="libstdc++-devel is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039101" version="502" comment="gcc-g77 is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039102" version="502" comment="libgcc is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039103" version="502" comment="libstdc++ is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039104" version="502" comment="libf2c is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039105" version="502" comment="gcc-c++-ppc32 is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039106" version="502" comment="cpp is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039107" version="502" comment="gcc-java is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039108" version="502" comment="gcc-ppc32 is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039109" version="502" comment="libgnat is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039110" version="502" comment="gcc-objc is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039111" version="502" comment="libobjc is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039112" version="502" comment="libgcj-devel is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039113" version="502" comment="gcc-gnat is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100039114" version="502" comment="libgcj is earlier than 0:3.4.6-11.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100039013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100039009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040002" version="502" comment="php is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040003" version="502" comment="php is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040004" version="502" comment="php-snmp is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040005" version="502" comment="php-snmp is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040006" version="502" comment="php-ncurses is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040007" version="502" comment="php-ncurses is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040008" version="502" comment="php-ldap is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040009" version="502" comment="php-ldap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040010" version="502" comment="php-xmlrpc is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040011" version="502" comment="php-xmlrpc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040012" version="502" comment="php-pdo is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040013" version="502" comment="php-pdo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040014" version="502" comment="php-xml is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040015" version="502" comment="php-xml is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040016" version="502" comment="php-odbc is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040017" version="502" comment="php-odbc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040018" version="502" comment="php-mbstring is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040019" version="502" comment="php-mbstring is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040020" version="502" comment="php-mysql is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040021" version="502" comment="php-mysql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040022" version="502" comment="php-imap is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040023" version="502" comment="php-imap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040024" version="502" comment="php-pgsql is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040025" version="502" comment="php-pgsql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040026" version="502" comment="php-common is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040027" version="502" comment="php-common is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040028" version="502" comment="php-cli is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040029" version="502" comment="php-cli is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040030" version="502" comment="php-bcmath is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040031" version="502" comment="php-bcmath is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040032" version="502" comment="php-devel is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040033" version="502" comment="php-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040034" version="502" comment="php-dba is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040035" version="502" comment="php-dba is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040036" version="502" comment="php-soap is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040037" version="502" comment="php-soap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040038" version="502" comment="php-gd is earlier than 0:5.1.6-24.el5_4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040039" version="502" comment="php-gd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040041" version="502" comment="php is earlier than 0:4.3.2-54.ent" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040042" version="502" comment="php is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040043" version="502" comment="php-pgsql is earlier than 0:4.3.2-54.ent" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040044" version="502" comment="php-pgsql is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040045" version="502" comment="php-devel is earlier than 0:4.3.2-54.ent" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040046" version="502" comment="php-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040047" version="502" comment="php-odbc is earlier than 0:4.3.2-54.ent" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040048" version="502" comment="php-odbc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040049" version="502" comment="php-mysql is earlier than 0:4.3.2-54.ent" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040050" version="502" comment="php-mysql is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040051" version="502" comment="php-imap is earlier than 0:4.3.2-54.ent" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040052" version="502" comment="php-imap is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040053" version="502" comment="php-ldap is earlier than 0:4.3.2-54.ent" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040054" version="502" comment="php-ldap is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040056" version="502" comment="php is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040057" version="502" comment="php-pear is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040058" version="502" comment="php-pear is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040059" version="502" comment="php-xmlrpc is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040060" version="502" comment="php-xmlrpc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040061" version="502" comment="php-gd is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040062" version="502" comment="php-gd is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040063" version="502" comment="php-devel is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040064" version="502" comment="php-ncurses is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040065" version="502" comment="php-ncurses is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040066" version="502" comment="php-domxml is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040067" version="502" comment="php-domxml is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040068" version="502" comment="php-mbstring is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040069" version="502" comment="php-mbstring is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040070" version="502" comment="php-odbc is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040071" version="502" comment="php-pgsql is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040072" version="502" comment="php-mysql is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040073" version="502" comment="php-imap is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040074" version="502" comment="php-snmp is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040075" version="502" comment="php-snmp is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100040076" version="502" comment="php-ldap is earlier than 0:4.3.9-3.29" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100040005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100040008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044002" version="502" comment="pidgin is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044003" version="502" comment="pidgin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044004" version="502" comment="libpurple-perl is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044005" version="502" comment="libpurple-perl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044006" version="502" comment="pidgin-perl is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044007" version="502" comment="pidgin-perl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044008" version="502" comment="finch is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044009" version="502" comment="finch is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044010" version="502" comment="finch-devel is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044011" version="502" comment="finch-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044012" version="502" comment="libpurple-tcl is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044013" version="502" comment="libpurple-tcl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044014" version="502" comment="libpurple is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044015" version="502" comment="libpurple is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044016" version="502" comment="pidgin-devel is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044017" version="502" comment="pidgin-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044018" version="502" comment="libpurple-devel is earlier than 0:2.6.5-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044019" version="502" comment="libpurple-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044021" version="502" comment="pidgin is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044022" version="502" comment="pidgin is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044023" version="502" comment="libpurple-devel is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044024" version="502" comment="libpurple-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044025" version="502" comment="pidgin-perl is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044026" version="502" comment="pidgin-perl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044027" version="502" comment="finch-devel is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044028" version="502" comment="finch-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044029" version="502" comment="pidgin-devel is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044030" version="502" comment="pidgin-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044031" version="502" comment="libpurple is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044032" version="502" comment="libpurple is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044033" version="502" comment="libpurple-tcl is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044034" version="502" comment="libpurple-tcl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044035" version="502" comment="finch is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044036" version="502" comment="finch is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044037" version="502" comment="libpurple-perl is earlier than 0:2.6.5-1.el4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100044006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100044038" version="502" comment="libpurple-perl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046002" version="502" comment="kernel is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046004" version="502" comment="kernel-headers is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046006" version="502" comment="kernel-xen is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046008" version="502" comment="kernel-debug-devel is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046010" version="502" comment="kernel-debug is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046012" version="502" comment="kernel-xen-devel is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046014" version="502" comment="kernel-devel is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046016" version="502" comment="kernel-kdump-devel is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046018" version="502" comment="kernel-kdump is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046020" version="502" comment="kernel-PAE-devel is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046022" version="502" comment="kernel-PAE is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100046024" version="502" comment="kernel-doc is earlier than 0:2.6.18-164.11.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100046003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100054002" version="502" comment="openssl is earlier than 0:0.9.8e-12.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100054003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100054003" version="502" comment="openssl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100054004" version="502" comment="openssl-perl is earlier than 0:0.9.8e-12.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100054003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100054005" version="502" comment="openssl-perl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100054006" version="502" comment="openssl-devel is earlier than 0:0.9.8e-12.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100054003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100054007" version="502" comment="openssl-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100061002" version="503" comment="gzip is earlier than 0:1.3.5-11.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100061002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100061004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100061003" version="503" comment="gzip is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100061002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100061005" version="503" comment="gzip is earlier than 0:1.3.3-15.rhel3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100061002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100061006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100061006" version="503" comment="gzip is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100061002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100061008" version="503" comment="gzip is earlier than 0:1.3.3-18.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100061002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100061008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062002" version="503" comment="bind is earlier than 30:9.3.6-4.P1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062003" version="503" comment="bind is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062004" version="503" comment="bind-libs is earlier than 30:9.3.6-4.P1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062005" version="503" comment="bind-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062006" version="503" comment="bind-chroot is earlier than 30:9.3.6-4.P1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062007" version="503" comment="bind-chroot is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062008" version="503" comment="bind-sdb is earlier than 30:9.3.6-4.P1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062009" version="503" comment="bind-sdb is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062010" version="503" comment="bind-libbind-devel is earlier than 30:9.3.6-4.P1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062011" version="503" comment="bind-libbind-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062012" version="503" comment="bind-devel is earlier than 30:9.3.6-4.P1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062013" version="503" comment="bind-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062014" version="503" comment="caching-nameserver is earlier than 30:9.3.6-4.P1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062015" version="503" comment="caching-nameserver is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062016" version="503" comment="bind-utils is earlier than 30:9.3.6-4.P1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100062017" version="503" comment="bind-utils is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100062009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076002" version="502" comment="kernel is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076004" version="502" comment="kernel-devel is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076006" version="502" comment="kernel-xenU is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076008" version="502" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076010" version="502" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076012" version="502" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076014" version="502" comment="kernel-smp is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076016" version="502" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076018" version="502" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076020" version="502" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100076022" version="502" comment="kernel-doc is earlier than 0:2.6.9-89.0.20.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100076003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100088002" version="503" comment="kvm is earlier than 0:83-105.el5_4.22" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100088003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100088003" version="503" comment="kvm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100088004" version="503" comment="kvm-tools is earlier than 0:83-105.el5_4.22" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100088003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100088005" version="503" comment="kvm-tools is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100088006" version="503" comment="kmod-kvm is earlier than 0:83-105.el5_4.22" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100088003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100088007" version="503" comment="kmod-kvm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100088008" version="503" comment="kvm-qemu-img is earlier than 0:83-105.el5_4.22" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100088003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100088009" version="503" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100094002" version="503" comment="HelixPlayer is earlier than 1:1.0.6-1.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100094002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100094003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100094003" version="503" comment="HelixPlayer is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100094002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101002" version="503" comment="openoffice.org is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101003" version="503" comment="openoffice.org is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101004" version="503" comment="openoffice.org-langpack-ts_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101005" version="503" comment="openoffice.org-langpack-ts_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101006" version="503" comment="openoffice.org-langpack-zh_TW is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101007" version="503" comment="openoffice.org-langpack-zh_TW is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101008" version="503" comment="openoffice.org-langpack-lt_LT is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101009" version="503" comment="openoffice.org-langpack-lt_LT is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101010" version="503" comment="openoffice.org-langpack-hu_HU is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101011" version="503" comment="openoffice.org-langpack-hu_HU is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101012" version="503" comment="openoffice.org-langpack-nb_NO is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101013" version="503" comment="openoffice.org-langpack-nb_NO is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101014" version="503" comment="openoffice.org-core is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101015" version="503" comment="openoffice.org-core is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101016" version="503" comment="openoffice.org-langpack-or_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101017" version="503" comment="openoffice.org-langpack-or_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101018" version="503" comment="openoffice.org-langpack-sr_CS is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101019" version="503" comment="openoffice.org-langpack-sr_CS is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101020" version="503" comment="openoffice.org-langpack-af_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101021" version="503" comment="openoffice.org-langpack-af_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101022" version="503" comment="openoffice.org-xsltfilter is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101023" version="503" comment="openoffice.org-xsltfilter is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101024" version="503" comment="openoffice.org-langpack-da_DK is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101025" version="503" comment="openoffice.org-langpack-da_DK is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101026" version="503" comment="openoffice.org-langpack-el_GR is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101027" version="503" comment="openoffice.org-langpack-el_GR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101028" version="503" comment="openoffice.org-langpack-ml_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101029" version="503" comment="openoffice.org-langpack-ml_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101030" version="503" comment="openoffice.org-langpack-xh_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101031" version="503" comment="openoffice.org-langpack-xh_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101032" version="503" comment="openoffice.org-langpack-ar is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101033" version="503" comment="openoffice.org-langpack-ar is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101034" version="503" comment="openoffice.org-langpack-hi_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101035" version="503" comment="openoffice.org-langpack-hi_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101036" version="503" comment="openoffice.org-langpack-ur is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101037" version="503" comment="openoffice.org-langpack-ur is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101038" version="503" comment="openoffice.org-langpack-eu_ES is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101039" version="503" comment="openoffice.org-langpack-eu_ES is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101040" version="503" comment="openoffice.org-langpack-it is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101041" version="503" comment="openoffice.org-langpack-it is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101042" version="503" comment="openoffice.org-langpack-ru is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101043" version="503" comment="openoffice.org-langpack-ru is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101044" version="503" comment="openoffice.org-writer is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101045" version="503" comment="openoffice.org-writer is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101046" version="503" comment="openoffice.org-langpack-nn_NO is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101047" version="503" comment="openoffice.org-langpack-nn_NO is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101048" version="503" comment="openoffice.org-langpack-fi_FI is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101049" version="503" comment="openoffice.org-langpack-fi_FI is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101050" version="503" comment="openoffice.org-javafilter is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101051" version="503" comment="openoffice.org-javafilter is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101052" version="503" comment="openoffice.org-langpack-th_TH is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101053" version="503" comment="openoffice.org-langpack-th_TH is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101054" version="503" comment="openoffice.org-langpack-sv is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101055" version="503" comment="openoffice.org-langpack-sv is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101056" version="503" comment="openoffice.org-langpack-gu_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101057" version="503" comment="openoffice.org-langpack-gu_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101058" version="503" comment="openoffice.org-langpack-te_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101059" version="503" comment="openoffice.org-langpack-te_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101060" version="503" comment="openoffice.org-langpack-ms_MY is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101031" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101061" version="503" comment="openoffice.org-langpack-ms_MY is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101031" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101062" version="503" comment="openoffice.org-langpack-zh_CN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101063" version="503" comment="openoffice.org-langpack-zh_CN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101064" version="503" comment="openoffice.org-calc is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101033" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101065" version="503" comment="openoffice.org-calc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101033" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101066" version="503" comment="openoffice.org-langpack-nl is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101034" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101067" version="503" comment="openoffice.org-langpack-nl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101034" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101068" version="503" comment="openoffice.org-pyuno is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101035" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101069" version="503" comment="openoffice.org-pyuno is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101035" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101070" version="503" comment="openoffice.org-langpack-mr_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101036" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101071" version="503" comment="openoffice.org-langpack-mr_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101036" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101072" version="503" comment="openoffice.org-langpack-ga_IE is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101037" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101073" version="503" comment="openoffice.org-langpack-ga_IE is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101037" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101074" version="503" comment="openoffice.org-langpack-ss_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101038" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101075" version="503" comment="openoffice.org-langpack-ss_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101038" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101076" version="503" comment="openoffice.org-langpack-et_EE is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101039" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101077" version="503" comment="openoffice.org-langpack-et_EE is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101039" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101078" version="503" comment="openoffice.org-sdk is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101040" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101079" version="503" comment="openoffice.org-sdk is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101040" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101080" version="503" comment="openoffice.org-langpack-zu_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101041" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101081" version="503" comment="openoffice.org-langpack-zu_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101041" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101082" version="503" comment="openoffice.org-langpack-hr_HR is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101042" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101083" version="503" comment="openoffice.org-langpack-hr_HR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101042" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101084" version="503" comment="openoffice.org-langpack-es is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101043" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101085" version="503" comment="openoffice.org-langpack-es is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101043" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101086" version="503" comment="openoffice.org-langpack-nso_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101044" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101087" version="503" comment="openoffice.org-langpack-nso_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101044" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101088" version="503" comment="openoffice.org-langpack-ta_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101045" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101089" version="503" comment="openoffice.org-langpack-ta_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101045" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101090" version="503" comment="openoffice.org-langpack-sl_SI is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101046" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101091" version="503" comment="openoffice.org-langpack-sl_SI is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101046" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101092" version="503" comment="openoffice.org-graphicfilter is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101047" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101093" version="503" comment="openoffice.org-graphicfilter is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101047" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101094" version="503" comment="openoffice.org-langpack-bg_BG is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101048" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101095" version="503" comment="openoffice.org-langpack-bg_BG is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101048" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101096" version="503" comment="openoffice.org-langpack-as_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101049" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101097" version="503" comment="openoffice.org-langpack-as_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101049" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101098" version="503" comment="openoffice.org-testtools is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101050" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101099" version="503" comment="openoffice.org-testtools is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101050" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101100" version="503" comment="openoffice.org-langpack-ja_JP is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101051" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101101" version="503" comment="openoffice.org-langpack-ja_JP is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101051" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101102" version="503" comment="openoffice.org-langpack-kn_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101052" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101103" version="503" comment="openoffice.org-langpack-kn_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101052" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101104" version="503" comment="openoffice.org-langpack-fr is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101053" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101105" version="503" comment="openoffice.org-langpack-fr is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101053" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101106" version="503" comment="openoffice.org-base is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101054" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101107" version="503" comment="openoffice.org-base is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101054" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101108" version="503" comment="openoffice.org-langpack-sk_SK is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101055" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101109" version="503" comment="openoffice.org-langpack-sk_SK is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101055" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101110" version="503" comment="openoffice.org-impress is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101056" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101111" version="503" comment="openoffice.org-impress is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101056" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101112" version="503" comment="openoffice.org-langpack-pa_IN is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101057" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101113" version="503" comment="openoffice.org-langpack-pa_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101057" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101114" version="503" comment="openoffice.org-langpack-bn is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101058" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101115" version="503" comment="openoffice.org-langpack-bn is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101058" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101116" version="503" comment="openoffice.org-langpack-ko_KR is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101059" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101117" version="503" comment="openoffice.org-langpack-ko_KR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101059" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101118" version="503" comment="openoffice.org-langpack-cs_CZ is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101060" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101119" version="503" comment="openoffice.org-langpack-cs_CZ is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101060" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101120" version="503" comment="openoffice.org-langpack-ca_ES is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101061" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101121" version="503" comment="openoffice.org-langpack-ca_ES is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101061" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101122" version="503" comment="openoffice.org-langpack-gl_ES is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101062" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101123" version="503" comment="openoffice.org-langpack-gl_ES is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101062" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101124" version="503" comment="openoffice.org-langpack-st_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101063" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101125" version="503" comment="openoffice.org-langpack-st_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101063" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101126" version="503" comment="openoffice.org-langpack-cy_GB is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101064" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101127" version="503" comment="openoffice.org-langpack-cy_GB is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101064" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101128" version="503" comment="openoffice.org-langpack-pt_BR is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101065" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101129" version="503" comment="openoffice.org-langpack-pt_BR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101065" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101130" version="503" comment="openoffice.org-langpack-de is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101066" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101131" version="503" comment="openoffice.org-langpack-de is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101066" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101132" version="503" comment="openoffice.org-sdk-doc is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101067" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101133" version="503" comment="openoffice.org-sdk-doc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101067" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101134" version="503" comment="openoffice.org-headless is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101068" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101135" version="503" comment="openoffice.org-headless is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101068" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101136" version="503" comment="openoffice.org-langpack-he_IL is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101069" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101137" version="503" comment="openoffice.org-langpack-he_IL is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101069" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101138" version="503" comment="openoffice.org-math is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101070" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101139" version="503" comment="openoffice.org-math is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101070" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101140" version="503" comment="openoffice.org-langpack-tr_TR is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101071" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101141" version="503" comment="openoffice.org-langpack-tr_TR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101071" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101142" version="503" comment="openoffice.org-langpack-pl_PL is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101072" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101143" version="503" comment="openoffice.org-langpack-pl_PL is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101072" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101144" version="503" comment="openoffice.org-draw is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101073" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101145" version="503" comment="openoffice.org-draw is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101073" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101146" version="503" comment="openoffice.org-emailmerge is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101074" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101147" version="503" comment="openoffice.org-emailmerge is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101074" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101148" version="503" comment="openoffice.org-langpack-ve_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101075" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101149" version="503" comment="openoffice.org-langpack-ve_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101075" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101150" version="503" comment="openoffice.org-langpack-pt_PT is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101076" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101151" version="503" comment="openoffice.org-langpack-pt_PT is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101076" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101152" version="503" comment="openoffice.org-langpack-tn_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101077" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101153" version="503" comment="openoffice.org-langpack-tn_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101077" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101154" version="503" comment="openoffice.org-langpack-nr_ZA is earlier than 1:2.3.0-6.11.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101078" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101155" version="503" comment="openoffice.org-langpack-nr_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101078" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101157" version="503" comment="openoffice.org is earlier than 0:1.1.2-46.2.0.EL3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101158" version="503" comment="openoffice.org is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101159" version="503" comment="openoffice.org-libs is earlier than 0:1.1.2-46.2.0.EL3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101079" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101160" version="503" comment="openoffice.org-libs is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101079" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101161" version="503" comment="openoffice.org-i18n is earlier than 0:1.1.2-46.2.0.EL3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101080" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101162" version="503" comment="openoffice.org-i18n is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101080" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101164" version="503" comment="openoffice.org is earlier than 0:1.1.5-10.6.0.7.EL4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101165" version="503" comment="openoffice.org-libs is earlier than 0:1.1.5-10.6.0.7.EL4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101079" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101166" version="503" comment="openoffice.org-i18n is earlier than 0:1.1.5-10.6.0.7.EL4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101080" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101167" version="503" comment="openoffice.org-kde is earlier than 0:1.1.5-10.6.0.7.EL4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101081" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101168" version="503" comment="openoffice.org-kde is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101081" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101169" version="503" comment="openoffice.org2 is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101082" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101170" version="503" comment="openoffice.org2 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101082" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101171" version="503" comment="openoffice.org2-langpack-hr_HR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101083" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101172" version="503" comment="openoffice.org2-langpack-hr_HR is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101083" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101173" version="503" comment="openoffice.org2-langpack-gu_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101084" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101174" version="503" comment="openoffice.org2-langpack-gu_IN is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101084" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101175" version="503" comment="openoffice.org2-langpack-ru is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101085" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101176" version="503" comment="openoffice.org2-langpack-ru is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101085" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101177" version="503" comment="openoffice.org2-langpack-es is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101086" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101178" version="503" comment="openoffice.org2-langpack-es is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101086" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101179" version="503" comment="openoffice.org2-draw is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101087" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101180" version="503" comment="openoffice.org2-draw is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101087" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101181" version="503" comment="openoffice.org2-base is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101088" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101182" version="503" comment="openoffice.org2-base is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101088" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101183" version="503" comment="openoffice.org2-core is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101089" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101184" version="503" comment="openoffice.org2-core is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101089" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101185" version="503" comment="openoffice.org2-langpack-zh_CN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101090" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101186" version="503" comment="openoffice.org2-langpack-zh_CN is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101090" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101187" version="503" comment="openoffice.org2-langpack-bn is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101091" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101188" version="503" comment="openoffice.org2-langpack-bn is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101091" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101189" version="503" comment="openoffice.org2-langpack-fr is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101092" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101190" version="503" comment="openoffice.org2-langpack-fr is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101092" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101191" version="503" comment="openoffice.org2-langpack-nl is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101093" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101192" version="503" comment="openoffice.org2-langpack-nl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101093" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101193" version="503" comment="openoffice.org2-langpack-hi_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101094" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101194" version="503" comment="openoffice.org2-langpack-hi_IN is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101094" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101195" version="503" comment="openoffice.org2-langpack-pt_BR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101095" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101196" version="503" comment="openoffice.org2-langpack-pt_BR is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101095" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101197" version="503" comment="openoffice.org2-langpack-cy_GB is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101096" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101198" version="503" comment="openoffice.org2-langpack-cy_GB is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101096" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101199" version="503" comment="openoffice.org2-langpack-de is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101097" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101200" version="503" comment="openoffice.org2-langpack-de is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101097" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101201" version="503" comment="openoffice.org2-langpack-et_EE is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101098" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101202" version="503" comment="openoffice.org2-langpack-et_EE is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101098" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101203" version="503" comment="openoffice.org2-langpack-af_ZA is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101099" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101204" version="503" comment="openoffice.org2-langpack-af_ZA is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101099" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101205" version="503" comment="openoffice.org2-langpack-tr_TR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101100" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101206" version="503" comment="openoffice.org2-langpack-tr_TR is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101100" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101207" version="503" comment="openoffice.org2-langpack-zh_TW is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101101" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101208" version="503" comment="openoffice.org2-langpack-zh_TW is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101101" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101209" version="503" comment="openoffice.org2-langpack-ja_JP is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101102" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101210" version="503" comment="openoffice.org2-langpack-ja_JP is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101102" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101211" version="503" comment="openoffice.org2-langpack-th_TH is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101103" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101212" version="503" comment="openoffice.org2-langpack-th_TH is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101103" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101213" version="503" comment="openoffice.org2-langpack-ar is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101104" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101214" version="503" comment="openoffice.org2-langpack-ar is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101104" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101215" version="503" comment="openoffice.org2-langpack-fi_FI is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101105" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101216" version="503" comment="openoffice.org2-langpack-fi_FI is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101105" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101217" version="503" comment="openoffice.org2-langpack-hu_HU is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101106" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101218" version="503" comment="openoffice.org2-langpack-hu_HU is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101106" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101219" version="503" comment="openoffice.org2-emailmerge is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101107" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101220" version="503" comment="openoffice.org2-emailmerge is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101107" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101221" version="503" comment="openoffice.org2-langpack-he_IL is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101108" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101222" version="503" comment="openoffice.org2-langpack-he_IL is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101108" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101223" version="503" comment="openoffice.org2-langpack-cs_CZ is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101109" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101224" version="503" comment="openoffice.org2-langpack-cs_CZ is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101109" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101225" version="503" comment="openoffice.org2-writer is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101110" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101226" version="503" comment="openoffice.org2-writer is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101110" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101227" version="503" comment="openoffice.org2-langpack-pl_PL is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101111" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101228" version="503" comment="openoffice.org2-langpack-pl_PL is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101111" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101229" version="503" comment="openoffice.org2-langpack-bg_BG is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101112" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101230" version="503" comment="openoffice.org2-langpack-bg_BG is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101112" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101231" version="503" comment="openoffice.org2-langpack-eu_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101113" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101232" version="503" comment="openoffice.org2-langpack-eu_ES is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101113" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101233" version="503" comment="openoffice.org2-pyuno is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101114" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101234" version="503" comment="openoffice.org2-pyuno is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101114" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101235" version="503" comment="openoffice.org2-langpack-lt_LT is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101115" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101236" version="503" comment="openoffice.org2-langpack-lt_LT is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101115" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101237" version="503" comment="openoffice.org2-langpack-gl_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101116" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101238" version="503" comment="openoffice.org2-langpack-gl_ES is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101116" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101239" version="503" comment="openoffice.org2-math is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101117" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101240" version="503" comment="openoffice.org2-math is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101117" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101241" version="503" comment="openoffice.org2-langpack-sr_CS is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101118" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101242" version="503" comment="openoffice.org2-langpack-sr_CS is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101118" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101243" version="503" comment="openoffice.org2-langpack-nn_NO is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101119" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101244" version="503" comment="openoffice.org2-langpack-nn_NO is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101119" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101245" version="503" comment="openoffice.org2-xsltfilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101120" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101246" version="503" comment="openoffice.org2-xsltfilter is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101120" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101247" version="503" comment="openoffice.org2-langpack-sl_SI is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101121" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101248" version="503" comment="openoffice.org2-langpack-sl_SI is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101121" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101249" version="503" comment="openoffice.org2-langpack-ta_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101122" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101250" version="503" comment="openoffice.org2-langpack-ta_IN is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101122" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101251" version="503" comment="openoffice.org2-langpack-ms_MY is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101123" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101252" version="503" comment="openoffice.org2-langpack-ms_MY is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101123" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101253" version="503" comment="openoffice.org2-langpack-nb_NO is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101124" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101254" version="503" comment="openoffice.org2-langpack-nb_NO is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101124" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101255" version="503" comment="openoffice.org2-langpack-sk_SK is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101125" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101256" version="503" comment="openoffice.org2-langpack-sk_SK is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101125" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101257" version="503" comment="openoffice.org2-langpack-pt_PT is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101126" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101258" version="503" comment="openoffice.org2-langpack-pt_PT is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101126" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101259" version="503" comment="openoffice.org2-langpack-zu_ZA is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101127" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101260" version="503" comment="openoffice.org2-langpack-zu_ZA is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101127" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101261" version="503" comment="openoffice.org2-calc is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101128" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101262" version="503" comment="openoffice.org2-calc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101128" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101263" version="503" comment="openoffice.org2-langpack-da_DK is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101129" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101264" version="503" comment="openoffice.org2-langpack-da_DK is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101129" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101265" version="503" comment="openoffice.org2-graphicfilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101130" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101266" version="503" comment="openoffice.org2-graphicfilter is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101130" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101267" version="503" comment="openoffice.org2-langpack-sv is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101131" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101268" version="503" comment="openoffice.org2-langpack-sv is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101131" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101269" version="503" comment="openoffice.org2-langpack-pa_IN is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101132" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101270" version="503" comment="openoffice.org2-langpack-pa_IN is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101132" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101271" version="503" comment="openoffice.org2-langpack-it is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101133" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101272" version="503" comment="openoffice.org2-langpack-it is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101133" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101273" version="503" comment="openoffice.org2-langpack-ca_ES is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101134" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101274" version="503" comment="openoffice.org2-langpack-ca_ES is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101134" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101275" version="503" comment="openoffice.org2-langpack-el_GR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101135" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101276" version="503" comment="openoffice.org2-langpack-el_GR is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101135" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101277" version="503" comment="openoffice.org2-impress is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101136" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101278" version="503" comment="openoffice.org2-impress is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101136" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101279" version="503" comment="openoffice.org2-langpack-ko_KR is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101137" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101280" version="503" comment="openoffice.org2-langpack-ko_KR is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101137" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101281" version="503" comment="openoffice.org2-langpack-ga_IE is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101138" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101282" version="503" comment="openoffice.org2-langpack-ga_IE is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101138" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101283" version="503" comment="openoffice.org2-testtools is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101139" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101284" version="503" comment="openoffice.org2-testtools is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101139" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101285" version="503" comment="openoffice.org2-javafilter is earlier than 1:2.0.4-5.7.0.6.1.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101140" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100101009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100101286" version="503" comment="openoffice.org2-javafilter is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100101140" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100102002" version="502" comment="flash-plugin is earlier than 0:10.0.45.2-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100102002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100102003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100102003" version="502" comment="flash-plugin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100102002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108002" version="502" comment="NetworkManager is earlier than 1:0.7.0-9.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100108003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108003" version="502" comment="NetworkManager is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108004" version="502" comment="NetworkManager-glib is earlier than 1:0.7.0-9.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100108003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108005" version="502" comment="NetworkManager-glib is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108006" version="502" comment="NetworkManager-gnome is earlier than 1:0.7.0-9.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100108003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108007" version="502" comment="NetworkManager-gnome is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108008" version="502" comment="NetworkManager-devel is earlier than 1:0.7.0-9.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100108003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108009" version="502" comment="NetworkManager-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108010" version="502" comment="NetworkManager-glib-devel is earlier than 1:0.7.0-9.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100108003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100108011" version="502" comment="NetworkManager-glib-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100108006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109002" version="502" comment="mysql is earlier than 0:5.0.77-4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100109003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109003" version="502" comment="mysql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109004" version="502" comment="mysql-bench is earlier than 0:5.0.77-4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100109003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109005" version="502" comment="mysql-bench is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109006" version="502" comment="mysql-devel is earlier than 0:5.0.77-4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100109003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109007" version="502" comment="mysql-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109008" version="502" comment="mysql-test is earlier than 0:5.0.77-4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100109003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109009" version="502" comment="mysql-test is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109010" version="502" comment="mysql-server is earlier than 0:5.0.77-4.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100109003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100109011" version="502" comment="mysql-server is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100110002" version="502" comment="mysql is earlier than 0:4.1.22-2.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100110003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100110003" version="502" comment="mysql is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100110004" version="502" comment="mysql-server is earlier than 0:4.1.22-2.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100110003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100110005" version="502" comment="mysql-server is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100110006" version="502" comment="mysql-devel is earlier than 0:4.1.22-2.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100110003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100110007" version="502" comment="mysql-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100110008" version="502" comment="mysql-bench is earlier than 0:4.1.22-2.el4_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100110003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100110009" version="502" comment="mysql-bench is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100109003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112002" version="502" comment="xulrunner is earlier than 0:1.9.0.18-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100112004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112003" version="502" comment="xulrunner is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112004" version="502" comment="xulrunner-devel is earlier than 0:1.9.0.18-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100112004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112005" version="502" comment="xulrunner-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112006" version="502" comment="xulrunner-devel-unstable is earlier than 0:1.9.0.18-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100112004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112007" version="502" comment="xulrunner-devel-unstable is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112008" version="502" comment="firefox is earlier than 0:3.0.18-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100112005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112009" version="502" comment="firefox is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112011" version="502" comment="firefox is earlier than 0:3.0.18-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100112007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100112012" version="502" comment="firefox is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100112005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113002" version="502" comment="seamonkey is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113003" version="502" comment="seamonkey is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113004" version="502" comment="seamonkey-nss is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113005" version="502" comment="seamonkey-nss is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113006" version="502" comment="seamonkey-devel is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113007" version="502" comment="seamonkey-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113008" version="502" comment="seamonkey-js-debugger is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113009" version="502" comment="seamonkey-js-debugger is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113010" version="502" comment="seamonkey-nss-devel is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113011" version="502" comment="seamonkey-nss-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113012" version="502" comment="seamonkey-nspr is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113013" version="502" comment="seamonkey-nspr is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113014" version="502" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113015" version="502" comment="seamonkey-dom-inspector is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113016" version="502" comment="seamonkey-chat is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113017" version="502" comment="seamonkey-chat is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113018" version="502" comment="seamonkey-nspr-devel is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113019" version="502" comment="seamonkey-nspr-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113020" version="502" comment="seamonkey-mail is earlier than 0:1.0.9-0.50.el3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113021" version="502" comment="seamonkey-mail is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113023" version="502" comment="seamonkey is earlier than 0:1.0.9-52.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113024" version="502" comment="seamonkey-devel is earlier than 0:1.0.9-52.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113025" version="502" comment="seamonkey-js-debugger is earlier than 0:1.0.9-52.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113026" version="502" comment="seamonkey-mail is earlier than 0:1.0.9-52.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113027" version="502" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-52.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100113028" version="502" comment="seamonkey-chat is earlier than 0:1.0.9-52.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100113009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100113005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100114002" version="502" comment="acroread is earlier than 0:9.3.1-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100037002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100114004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100114004" version="502" comment="acroread-plugin is earlier than 0:9.3.1-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100037003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100114004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115002" version="502" comment="pidgin is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115004" version="502" comment="libpurple is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115006" version="502" comment="pidgin-devel is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115008" version="502" comment="finch is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115010" version="502" comment="libpurple-perl is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115012" version="502" comment="pidgin-perl is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115014" version="502" comment="finch-devel is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115016" version="502" comment="libpurple-tcl is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115018" version="502" comment="libpurple-devel is earlier than 0:2.6.6-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115021" version="502" comment="pidgin is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115023" version="502" comment="finch is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115025" version="502" comment="pidgin-perl is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115027" version="502" comment="libpurple is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115029" version="502" comment="libpurple-perl is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115031" version="502" comment="finch-devel is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115033" version="502" comment="pidgin-devel is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115035" version="502" comment="libpurple-tcl is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100115037" version="502" comment="libpurple-devel is earlier than 0:2.6.6-1.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100044010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100115006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100122002" version="502" comment="sudo is earlier than 0:1.6.9p17-6.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100122002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100122003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100122003" version="502" comment="sudo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100122002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124002" version="502" comment="systemtap is earlier than 0:0.9.7-5.el5_4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100124003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124003" version="502" comment="systemtap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124004" version="502" comment="systemtap-testsuite is earlier than 0:0.9.7-5.el5_4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100124003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124005" version="502" comment="systemtap-testsuite is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124006" version="502" comment="systemtap-runtime is earlier than 0:0.9.7-5.el5_4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100124003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124007" version="502" comment="systemtap-runtime is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124008" version="502" comment="systemtap-client is earlier than 0:0.9.7-5.el5_4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100124003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124009" version="502" comment="systemtap-client is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124010" version="502" comment="systemtap-initscript is earlier than 0:0.9.7-5.el5_4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100124003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124011" version="502" comment="systemtap-initscript is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124012" version="502" comment="systemtap-server is earlier than 0:0.9.7-5.el5_4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100124003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124013" version="502" comment="systemtap-server is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124014" version="502" comment="systemtap-sdt-devel is earlier than 0:0.9.7-5.el5_4.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100124003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100124015" version="502" comment="systemtap-sdt-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100125002" version="502" comment="systemtap is earlier than 0:0.6.2-2.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100125003" version="502" comment="systemtap is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100125004" version="502" comment="systemtap-testsuite is earlier than 0:0.6.2-2.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100125005" version="502" comment="systemtap-testsuite is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100125006" version="502" comment="systemtap-runtime is earlier than 0:0.6.2-2.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100125007" version="502" comment="systemtap-runtime is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100124004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100126002" version="502" comment="kvm is earlier than 0:83-105.el5_4.27" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100126004" version="502" comment="kvm-qemu-img is earlier than 0:83-105.el5_4.27" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100126006" version="502" comment="kmod-kvm is earlier than 0:83-105.el5_4.27" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100126008" version="502" comment="kvm-tools is earlier than 0:83-105.el5_4.27" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100088003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100129002" version="502" comment="cups is earlier than 1:1.3.7-11.el5_4.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100129002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100129003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100129003" version="502" comment="cups is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100129002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100129004" version="502" comment="cups-lpd is earlier than 1:1.3.7-11.el5_4.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100129003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100129003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100129005" version="502" comment="cups-lpd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100129003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100129006" version="502" comment="cups-devel is earlier than 1:1.3.7-11.el5_4.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100129004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100129003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100129007" version="502" comment="cups-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100129004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100129008" version="502" comment="cups-libs is earlier than 1:1.3.7-11.el5_4.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100129005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100129003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100129009" version="502" comment="cups-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100129005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130002" version="502" comment="java-1.5.0-ibm is earlier than 1:1.5.0.11.1-1jpp.3.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100130004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130003" version="502" comment="java-1.5.0-ibm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130004" version="502" comment="java-1.5.0-ibm-accessibility is earlier than 1:1.5.0.11.1-1jpp.3.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100130004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130005" version="502" comment="java-1.5.0-ibm-accessibility is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130006" version="502" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.11.1-1jpp.3.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100130004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130007" version="502" comment="java-1.5.0-ibm-jdbc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130008" version="502" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.11.1-1jpp.3.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100130004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130009" version="502" comment="java-1.5.0-ibm-src is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130010" version="502" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.11.1-1jpp.3.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100130004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130011" version="502" comment="java-1.5.0-ibm-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130012" version="502" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.11.1-1jpp.3.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100130004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130013" version="502" comment="java-1.5.0-ibm-demo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130014" version="502" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.11.1-1jpp.3.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100130004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130015" version="502" comment="java-1.5.0-ibm-javacomm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130016" version="502" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.11.1-1jpp.3.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100130004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100130017" version="502" comment="java-1.5.0-ibm-plugin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100130009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140002" version="502" comment="pango is earlier than 0:1.14.9-8.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100140004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140003" version="502" comment="pango is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140004" version="502" comment="pango-devel is earlier than 0:1.14.9-8.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100140004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140005" version="502" comment="pango-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140007" version="502" comment="pango is earlier than 0:1.2.5-10" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100140006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140008" version="502" comment="pango is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140009" version="502" comment="pango-devel is earlier than 0:1.2.5-10" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100140006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140010" version="502" comment="pango-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140012" version="502" comment="evolution28-pango is earlier than 0:1.14.9-13.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100140008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140013" version="502" comment="evolution28-pango is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140014" version="502" comment="evolution28-pango-devel is earlier than 0:1.14.9-13.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100140008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140015" version="502" comment="evolution28-pango-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140016" version="502" comment="pango is earlier than 0:1.6.0-16.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100140009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100140017" version="502" comment="pango-devel is earlier than 0:1.6.0-16.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100140003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100140009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100141002" version="502" comment="tar is earlier than 2:1.15.1-23.0.1.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100141002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100141004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100141003" version="502" comment="tar is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100141002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100141005" version="502" comment="tar is earlier than 0:1.14-13.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100141002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100141006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100141006" version="502" comment="tar is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100141002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100142002" version="502" comment="tar is earlier than 0:1.13.25-16.RHEL3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100141002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100142003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100143002" version="502" comment="cpio is earlier than 0:2.5-16.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100143002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100143003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100143003" version="502" comment="cpio is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100143002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100144002" version="502" comment="cpio is earlier than 0:2.6-23.el5_4.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100143002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100144003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100144003" version="502" comment="cpio is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100143002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100145002" version="502" comment="cpio is earlier than 0:2.5-6.RHEL3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100143002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100145003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146002" version="502" comment="kernel is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146004" version="502" comment="kernel-devel is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146006" version="502" comment="kernel-xenU-devel is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146008" version="502" comment="kernel-largesmp-devel is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146010" version="502" comment="kernel-smp-devel is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146012" version="502" comment="kernel-largesmp is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146014" version="502" comment="kernel-smp is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146016" version="502" comment="kernel-xenU is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146018" version="502" comment="kernel-hugemem-devel is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146020" version="502" comment="kernel-hugemem is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100020010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100146022" version="502" comment="kernel-doc is earlier than 0:2.6.9-89.0.23.EL" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100146003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147002" version="502" comment="kernel is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147004" version="502" comment="kernel-headers is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147006" version="502" comment="kernel-xen is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147008" version="502" comment="kernel-debug is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147010" version="502" comment="kernel-xen-devel is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147012" version="502" comment="kernel-debug-devel is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147014" version="502" comment="kernel-devel is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147016" version="502" comment="kernel-kdump-devel is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147018" version="502" comment="kernel-kdump is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147020" version="502" comment="kernel-PAE is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147022" version="502" comment="kernel-PAE-devel is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100147024" version="502" comment="kernel-doc is earlier than 0:2.6.18-164.15.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100147003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100153002" version="503" comment="thunderbird is earlier than 0:2.0.0.24-2.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100153002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100153003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100153003" version="503" comment="thunderbird is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100153002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100154002" version="503" comment="thunderbird is earlier than 0:1.5.0.12-25.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100153002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100154003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100154003" version="503" comment="thunderbird is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100153002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155002" version="502" comment="java-1.4.2-ibm is earlier than 0:1.4.2.13.4-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100155004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155003" version="502" comment="java-1.4.2-ibm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155004" version="502" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.13.4-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100155004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155005" version="502" comment="java-1.4.2-ibm-demo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155006" version="502" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.13.4-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100155004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155007" version="502" comment="java-1.4.2-ibm-src is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155008" version="502" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.13.4-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100155004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155009" version="502" comment="java-1.4.2-ibm-javacomm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155010" version="502" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.13.4-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100155004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155011" version="502" comment="java-1.4.2-ibm-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155012" version="502" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.13.4-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100155004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155013" version="502" comment="java-1.4.2-ibm-jdbc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155014" version="502" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.13.4-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100155004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100155015" version="502" comment="java-1.4.2-ibm-plugin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100155008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100162002" version="502" comment="openssl is earlier than 0:0.9.8e-12.el5_4.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100162003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100162004" version="502" comment="openssl-perl is earlier than 0:0.9.8e-12.el5_4.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100162003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100162006" version="502" comment="openssl-devel is earlier than 0:0.9.8e-12.el5_4.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100162003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163002" version="502" comment="openssl is earlier than 0:0.9.7a-33.26" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100163003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163003" version="502" comment="openssl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163004" version="502" comment="openssl-perl is earlier than 0:0.9.7a-33.26" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100163003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163005" version="502" comment="openssl-perl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163006" version="502" comment="openssl-devel is earlier than 0:0.9.7a-33.26" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100163003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163007" version="502" comment="openssl-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163009" version="502" comment="openssl is earlier than 0:0.9.7a-43.17.el4_8.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100163005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163010" version="502" comment="openssl-perl is earlier than 0:0.9.7a-43.17.el4_8.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100163005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100163011" version="502" comment="openssl-devel is earlier than 0:0.9.7a-43.17.el4_8.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100054004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100163005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100164002" version="502" comment="openssl097a is earlier than 0:0.9.7a-9.el5_4.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100164002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100164003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100164003" version="502" comment="openssl097a is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100164002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165002" version="502" comment="nspr is earlier than 0:4.8.4-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165003" version="502" comment="nspr is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165004" version="502" comment="nspr-devel is earlier than 0:4.8.4-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165005" version="502" comment="nspr-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165006" version="502" comment="nss is earlier than 0:3.12.6-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165007" version="502" comment="nss is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165008" version="502" comment="nss-pkcs11-devel is earlier than 0:3.12.6-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165009" version="502" comment="nss-pkcs11-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165010" version="502" comment="nss-tools is earlier than 0:3.12.6-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165011" version="502" comment="nss-tools is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165012" version="502" comment="nss-devel is earlier than 0:3.12.6-1.el5_4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165013" version="502" comment="nss-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165015" version="502" comment="nspr is earlier than 0:4.8.4-1.1.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165016" version="502" comment="nspr is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165017" version="502" comment="nspr-devel is earlier than 0:4.8.4-1.1.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165018" version="502" comment="nspr-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165019" version="502" comment="nss is earlier than 0:3.12.6-1.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165020" version="502" comment="nss is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165021" version="502" comment="nss-tools is earlier than 0:3.12.6-1.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165022" version="502" comment="nss-tools is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165023" version="502" comment="nss-devel is earlier than 0:3.12.6-1.el4_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100165008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100165024" version="502" comment="nss-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100165007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100166002" version="502" comment="gnutls is earlier than 0:1.4.1-3.el5_4.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100166003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100166003" version="502" comment="gnutls is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100166004" version="502" comment="gnutls-utils is earlier than 0:1.4.1-3.el5_4.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100166003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100166005" version="502" comment="gnutls-utils is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100166006" version="502" comment="gnutls-devel is earlier than 0:1.4.1-3.el5_4.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100166003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100166007" version="502" comment="gnutls-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100167002" version="502" comment="gnutls is earlier than 0:1.0.20-4.el4_8.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100167003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100167003" version="502" comment="gnutls is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100167004" version="502" comment="gnutls-devel is earlier than 0:1.0.20-4.el4_8.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100167003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100167005" version="502" comment="gnutls-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100166004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100168002" version="502" comment="httpd is earlier than 0:2.2.3-31.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100168003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100168003" version="502" comment="httpd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100168004" version="502" comment="httpd-devel is earlier than 0:2.2.3-31.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100168003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100168005" version="502" comment="httpd-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100168006" version="502" comment="httpd-manual is earlier than 0:2.2.3-31.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100168003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100168007" version="502" comment="httpd-manual is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100168008" version="502" comment="mod_ssl is earlier than 0:2.2.3-31.el5_4.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100168003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100168009" version="502" comment="mod_ssl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100173002" version="503" comment="openssl096b is earlier than 0:0.9.6b-16.50" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100173002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100173003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100173003" version="503" comment="openssl096b is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100173002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100173005" version="503" comment="openssl096b is earlier than 0:0.9.6b-22.46.el4_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100173002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100173005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175002" version="502" comment="httpd is earlier than 0:2.0.52-41.ent.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100175003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175003" version="502" comment="httpd is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175004" version="502" comment="httpd-devel is earlier than 0:2.0.52-41.ent.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100175003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175005" version="502" comment="httpd-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175006" version="502" comment="httpd-suexec is earlier than 0:2.0.52-41.ent.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100175004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100175003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175007" version="502" comment="httpd-suexec is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100175004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175008" version="502" comment="httpd-manual is earlier than 0:2.0.52-41.ent.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100175003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175009" version="502" comment="httpd-manual is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175010" version="502" comment="mod_ssl is earlier than 0:2.0.52-41.ent.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100175003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100175011" version="502" comment="mod_ssl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100168005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178002" version="505" comment="kernel is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178004" version="505" comment="kernel-headers is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178006" version="505" comment="kernel-xen-devel is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178008" version="505" comment="kernel-debug is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178010" version="505" comment="kernel-xen is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178012" version="505" comment="kernel-debug-devel is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178014" version="505" comment="kernel-devel is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178016" version="505" comment="kernel-kdump is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178018" version="505" comment="kernel-kdump-devel is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178020" version="505" comment="kernel-PAE is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178022" version="505" comment="kernel-PAE-devel is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100178024" version="505" comment="kernel-doc is earlier than 0:2.6.18-194.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100178003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100181002" version="506" comment="brltty is earlier than 0:3.7.2-4.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100181002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100181003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100181003" version="506" comment="brltty is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100181002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100181004" version="506" comment="brlapi is earlier than 0:0.4.1-4.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100181003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100181004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100181005" version="506" comment="brlapi is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100181003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100181006" version="506" comment="brlapi-devel is earlier than 0:0.4.1-4.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100181004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100181004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100181007" version="506" comment="brlapi-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100181004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198002" version="505" comment="openldap is earlier than 0:2.3.43-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100198003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198003" version="505" comment="openldap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198004" version="505" comment="openldap-clients is earlier than 0:2.3.43-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100198003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198005" version="505" comment="openldap-clients is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198006" version="505" comment="openldap-servers-sql is earlier than 0:2.3.43-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100198003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198007" version="505" comment="openldap-servers-sql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198008" version="505" comment="openldap-servers is earlier than 0:2.3.43-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100198003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198009" version="505" comment="openldap-servers is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198010" version="505" comment="openldap-devel is earlier than 0:2.3.43-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100198003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198011" version="505" comment="openldap-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198012" version="505" comment="openldap-servers-overlays is earlier than 0:2.3.43-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100198003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198013" version="505" comment="openldap-servers-overlays is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198014" version="505" comment="compat-openldap is earlier than 0:2.3.43_2.2.29-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100198004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100198015" version="505" comment="compat-openldap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100198008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100221002" version="505" comment="squid is earlier than 7:2.6.STABLE21-6.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100221002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100221003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100221003" version="505" comment="squid is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100221002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100237002" version="506" comment="sendmail is earlier than 0:8.13.8-8.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100237002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100237003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100237003" version="506" comment="sendmail is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100237002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100237004" version="506" comment="sendmail-doc is earlier than 0:8.13.8-8.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100237003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100237003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100237005" version="506" comment="sendmail-doc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100237003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100237006" version="506" comment="sendmail-cf is earlier than 0:8.13.8-8.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100237004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100237003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100237007" version="506" comment="sendmail-cf is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100237004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100237008" version="506" comment="sendmail-devel is earlier than 0:8.13.8-8.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100237005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100237003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20100237009" version="506" comment="sendmail-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20100237005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20100002002" />
</rpminfo_te
