<?xml version="1.0" encoding="UTF-8"?>

<oval_definitions xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:oval="http://oval.mitre.org/XMLSchema/oval-common-5" xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5" xmlns:unix-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#unix" xmlns:red-def="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://oval.mitre.org/XMLSchema/oval-common-5 oval-common-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5 oval-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#unix unix-definitions-schema.xsd http://oval.mitre.org/XMLSchema/oval-definitions-5#linux linux-definitions-schema.xsd">
  <generator>
    <oval:product_name>Red Hat OVAL Patch Definition Merger</oval:product_name>
    <oval:product_version>2</oval:product_version>
    <oval:schema_version>5.3</oval:schema_version>
    <oval:timestamp>2012-05-23T04:51:58</oval:timestamp>
  </generator>
<definitions>
<definition id="oval:com.redhat.rhsa:def:20120006" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0006: java-1.4.2-ibm security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0006-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0006.html" />
      <reference source="CVE" ref_id="CVE-2011-3389" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3389.html" />
      <reference source="CVE" ref_id="CVE-2011-3545" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3545.html" />
      <reference source="CVE" ref_id="CVE-2011-3547" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3547.html" />
      <reference source="CVE" ref_id="CVE-2011-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3548.html" />
      <reference source="CVE" ref_id="CVE-2011-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3549.html" />
      <reference source="CVE" ref_id="CVE-2011-3552" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3552.html" />
      <reference source="CVE" ref_id="CVE-2011-3556" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3556.html" />
      <reference source="CVE" ref_id="CVE-2011-3557" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3557.html" />
      <reference source="CVE" ref_id="CVE-2011-3560" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3560.html" />
    <description>The IBM Java SE version 1.4.2 release includes the IBM Java 1.4.2 Runtime
Environment and the IBM Java 1.4.2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 1.4.2 Runtime
Environment and the IBM Java 1.4.2 Software Development Kit. Detailed
vulnerability descriptions are linked from the IBM "Security alerts" page,
listed in the References section. (CVE-2011-3389, CVE-2011-3545,
CVE-2011-3547, CVE-2011-3548, CVE-2011-3549, CVE-2011-3552, CVE-2011-3556,
CVE-2011-3557, CVE-2011-3560)

All users of java-1.4.2-ibm are advised to upgrade to these updated
packages, which contain the IBM Java 1.4.2 SR13-FP11 release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-09" />
        <updated date="2012-01-09" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3389.html">CVE-2011-3389</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3545.html">CVE-2011-3545</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3547.html">CVE-2011-3547</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3548.html">CVE-2011-3548</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3549.html">CVE-2011-3549</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3552.html">CVE-2011-3552</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3556.html">CVE-2011-3556</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3557.html">CVE-2011-3557</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3560.html">CVE-2011-3560</cve>
        <bugzilla href="http://bugzilla.redhat.com/737506" id="737506">CVE-2011-3389 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745379" id="745379">CVE-2011-3560 OpenJDK: missing checkSetFactory calls in HttpsURLConnection (JSSE, 7096936)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745387" id="745387">CVE-2011-3547 OpenJDK: InputStream skip() information leak (Networking/IO, 7000600)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745397" id="745397">CVE-2011-3552 OpenJDK: excessive default UDP socket limit under SecurityManager (Networking, 7032417)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745459" id="745459">CVE-2011-3556 OpenJDK: RMI DGC server remote code execution (RMI, 7077466)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745464" id="745464">CVE-2011-3557 OpenJDK: RMI registry privileged code execution (RMI, 7083012)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745473" id="745473">CVE-2011-3548 OpenJDK: mutable static AWTKeyStroke.ctor (AWT, 7019773)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747191" id="747191">CVE-2011-3545 Oracle/IBM JDK: unspecified vulnerability fixed in 6u29 (Sound)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747198" id="747198">CVE-2011-3549 Oracle/IBM JDK: unspecified vulnerability fixed in 6u29 (Swing)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006014" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.13.11-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120006015" comment="java-1.4.2-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006012" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.13.11-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120006013" comment="java-1.4.2-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006002" comment="java-1.4.2-ibm is earlier than 0:1.4.2.13.11-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120006003" comment="java-1.4.2-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006008" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.13.11-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120006009" comment="java-1.4.2-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006006" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.13.11-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120006007" comment="java-1.4.2-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006004" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.13.11-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120006005" comment="java-1.4.2-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006010" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.13.11-1jpp.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120006011" comment="java-1.4.2-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120007" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0007: kernel security, bug fix, and enhancement update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0007-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0007.html" />
      <reference source="CVE" ref_id="CVE-2011-1020" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1020.html" />
      <reference source="CVE" ref_id="CVE-2011-3637" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3637.html" />
      <reference source="CVE" ref_id="CVE-2011-4077" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4077.html" />
      <reference source="CVE" ref_id="CVE-2011-4132" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4132.html" />
      <reference source="CVE" ref_id="CVE-2011-4324" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4324.html" />
      <reference source="CVE" ref_id="CVE-2011-4325" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4325.html" />
      <reference source="CVE" ref_id="CVE-2011-4330" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4330.html" />
      <reference source="CVE" ref_id="CVE-2011-4348" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4348.html" />
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* A buffer overflow flaw was found in the way the Linux kernel's XFS file
system implementation handled links with overly long path names. A local,
unprivileged user could use this flaw to cause a denial of service or
escalate their privileges by mounting a specially-crafted disk.
(CVE-2011-4077, Important)

* The fix for CVE-2011-2482 provided by RHSA-2011:1212 introduced a
regression: on systems that do not have Security-Enhanced Linux (SELinux)
in Enforcing mode, a socket lock race could occur between sctp_rcv() and
sctp_accept(). A remote attacker could use this flaw to cause a denial of
service. By default, SELinux runs in Enforcing mode on Red Hat Enterprise
Linux 5. (CVE-2011-4348, Important)

* The proc file system could allow a local, unprivileged user to obtain
sensitive information or possibly cause integrity issues. (CVE-2011-1020,
Moderate)

* A missing validation flaw was found in the Linux kernel's m_stop()
implementation. A local, unprivileged user could use this flaw to trigger a
denial of service. (CVE-2011-3637, Moderate)

* A flaw was found in the Linux kernel's Journaling Block Device (JBD).
A local attacker could use this flaw to crash the system by mounting a
specially-crafted ext3 or ext4 disk. (CVE-2011-4132, Moderate)

* A flaw was found in the Linux kernel's encode_share_access()
implementation. A local, unprivileged user could use this flaw to trigger a
denial of service by creating a regular file on an NFSv4 (Network File
System version 4) file system via mknod(). (CVE-2011-4324, Moderate)

* A flaw was found in the Linux kernel's NFS implementation. A local,
unprivileged user could use this flaw to cause a denial of service.
(CVE-2011-4325, Moderate)

* A missing boundary check was found in the Linux kernel's HFS file system
implementation. A local attacker could use this flaw to cause a denial of
service or escalate their privileges by mounting a specially-crafted disk.
(CVE-2011-4330, Moderate)

Red Hat would like to thank Kees Cook for reporting CVE-2011-1020, and
Clement Lecigne for reporting CVE-2011-4330.

This update also fixes several bugs and adds one enhancement. Documentation
for these changes will be available shortly from the Technical Notes
document linked to in the References section.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues, and fix the bugs and add the enhancement
noted in the Technical Notes. The system must be rebooted for this update
to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-10" />
        <updated date="2012-01-10" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1020.html">CVE-2011-1020</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3637.html">CVE-2011-3637</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4077.html">CVE-2011-4077</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4132.html">CVE-2011-4132</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4324.html">CVE-2011-4324</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4325.html">CVE-2011-4325</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4330.html">CVE-2011-4330</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4348.html">CVE-2011-4348</cve>
        <bugzilla href="http://bugzilla.redhat.com/680358" id="680358">CVE-2011-1020 kernel: no access restrictions of /proc/pid/* after setuid program exec</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747848" id="747848">CVE-2011-3637 kernel: proc: fix oops on invalid /proc/&lt;pid>/maps access</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/749156" id="749156">CVE-2011-4077 kernel: xfs: potential buffer overflow in xfs_readlink()</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/753341" id="753341">CVE-2011-4132 kernel: jbd/jbd2: invalid value of first log block leads to oops</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/755431" id="755431">CVE-2011-4330 kernel: hfs: add sanity check for file name length</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/755440" id="755440">CVE-2011-4324 kernel: nfsv4: mknod(2) DoS</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/755455" id="755455">CVE-2011-4325 kernel: nfs: diotest4 from LTP crash client null pointer deref</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/757143" id="757143">CVE-2011-4348 kernel: incomplete fix for CVE-2011-2482</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007004" comment="kernel-headers is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007002" comment="kernel is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007024" comment="kernel-doc is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007012" comment="kernel-devel is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007018" comment="kernel-kdump is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007019" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007010" comment="kernel-xen-devel is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007011" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007006" comment="kernel-debug is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007008" comment="kernel-debug-devel is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007009" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007020" comment="kernel-PAE is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007022" comment="kernel-PAE-devel is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007016" comment="kernel-kdump-devel is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007017" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120007014" comment="kernel-xen is earlier than 0:2.6.18-274.17.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007015" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120011" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0011: acroread security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
      <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0011-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0011.html" />
      <reference source="CVE" ref_id="CVE-2011-2462" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2462.html" />
      <reference source="CVE" ref_id="CVE-2011-4369" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4369.html" />
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes two security flaws in Adobe Reader. These flaws are
detailed on the Adobe security page APSB11-30, listed in the References
section. A specially-crafted PDF file could cause Adobe Reader to crash or,
potentially, execute arbitrary code as the user running Adobe Reader when
opened. (CVE-2011-2462, CVE-2011-4369)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 9.4.7, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-10" />
        <updated date="2012-01-10" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2462.html">CVE-2011-2462</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4369.html">CVE-2011-4369</cve>
        <bugzilla href="http://bugzilla.redhat.com/760908" id="760908">CVE-2011-2462 acroread: U3D memory corruption vulnerability (APSB11-30)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/768517" id="768517">CVE-2011-4369 acroread: unspecified vulnerability in PRC component (APSB11-30)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011004" comment="acroread-plugin is earlier than 0:9.4.7-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011002" comment="acroread is earlier than 0:9.4.7-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011012" comment="acroread-plugin is earlier than 0:9.4.7-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011013" comment="acroread-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011010" comment="acroread is earlier than 0:9.4.7-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011011" comment="acroread is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120016" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0016: libxml2 security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0016-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0016.html" />
      <reference source="CVE" ref_id="CVE-2011-0216" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0216.html" />
      <reference source="CVE" ref_id="CVE-2011-2834" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2834.html" />
      <reference source="CVE" ref_id="CVE-2011-3905" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3905.html" />
      <reference source="CVE" ref_id="CVE-2011-3919" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3919.html" />
    <description>The libxml2 library is a development toolbox providing the implementation
of various XML standards. One of those standards is the XML Path Language
(XPath), which is a language for addressing parts of an XML document.

A heap-based buffer overflow flaw was found in the way libxml2 decoded
entity references with long names. A remote attacker could provide a
specially-crafted XML file that, when opened in an application linked
against libxml2, would cause the application to crash or, potentially,
execute arbitrary code with the privileges of the user running the
application. (CVE-2011-3919)

An off-by-one error, leading to a heap-based buffer overflow, was found in
the way libxml2 parsed certain XML files. A remote attacker could provide a
specially-crafted XML file that, when opened in an application linked
against libxml2, would cause the application to crash or, potentially,
execute arbitrary code with the privileges of the user running the
application. (CVE-2011-0216)

A flaw was found in the way libxml2 parsed certain XPath expressions. If an
attacker were able to supply a specially-crafted XML file to an application
using libxml2, as well as an XPath expression for that application to run
against the crafted file, it could cause the application to crash.
(CVE-2011-2834)

Note: Red Hat does not ship any applications that use libxml2 in a way that
would allow the CVE-2011-2834 flaw to be exploited; however, third-party
applications may allow XPath expressions to be passed which could trigger
this flaw.

An out-of-bounds memory read flaw was found in libxml2. A remote attacker
could provide a specially-crafted XML file that, when opened in an
application linked against libxml2, would cause the application to crash.
(CVE-2011-3905)

All users of libxml2 are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. The desktop must
be restarted (log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-11" />
        <updated date="2012-01-11" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0216.html">CVE-2011-0216</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2834.html">CVE-2011-2834</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3905.html">CVE-2011-3905</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3919.html">CVE-2011-3919</cve>
        <bugzilla href="http://bugzilla.redhat.com/724906" id="724906">CVE-2011-0216 libxml2: Off-by-one error leading to heap-based buffer overflow in encoding</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/735751" id="735751">CVE-2011-2834 libxml2: double-free caused by malformed XPath expression in XSLT</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/767387" id="767387">CVE-2011-3905 libxml2 out of bounds read</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771896" id="771896">CVE-2011-3919 libxml2: Heap-based buffer overflow when decoding an entity reference with a long name</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016006" comment="libxml2-python is earlier than 0:2.6.16-12.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120016007" comment="libxml2-python is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016002" comment="libxml2 is earlier than 0:2.6.16-12.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120016003" comment="libxml2 is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016004" comment="libxml2-devel is earlier than 0:2.6.16-12.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120016005" comment="libxml2-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120017" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0017: libxml2 security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0017-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0017.html" />
      <reference source="CVE" ref_id="CVE-2010-4008" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4008.html" />
      <reference source="CVE" ref_id="CVE-2011-0216" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0216.html" />
      <reference source="CVE" ref_id="CVE-2011-1944" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1944.html" />
      <reference source="CVE" ref_id="CVE-2011-2834" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2834.html" />
      <reference source="CVE" ref_id="CVE-2011-3905" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3905.html" />
      <reference source="CVE" ref_id="CVE-2011-3919" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3919.html" />
    <description>The libxml2 library is a development toolbox providing the implementation
of various XML standards. One of those standards is the XML Path Language
(XPath), which is a language for addressing parts of an XML document.

A heap-based buffer overflow flaw was found in the way libxml2 decoded
entity references with long names. A remote attacker could provide a
specially-crafted XML file that, when opened in an application linked
against libxml2, would cause the application to crash or, potentially,
execute arbitrary code with the privileges of the user running the
application. (CVE-2011-3919)

An off-by-one error, leading to a heap-based buffer overflow, was found in
the way libxml2 parsed certain XML files. A remote attacker could provide a
specially-crafted XML file that, when opened in an application linked
against libxml2, would cause the application to crash or, potentially,
execute arbitrary code with the privileges of the user running the
application. (CVE-2011-0216)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way libxml2 parsed certain XPath expressions. If an attacker
were able to supply a specially-crafted XML file to an application using
libxml2, as well as an XPath expression for that application to run against
the crafted file, it could cause the application to crash or, possibly,
execute arbitrary code. (CVE-2011-1944)

Flaws were found in the way libxml2 parsed certain XPath expressions. If an
attacker were able to supply a specially-crafted XML file to an application
using libxml2, as well as an XPath expression for that application to run
against the crafted file, it could cause the application to crash.
(CVE-2010-4008, CVE-2011-2834)

An out-of-bounds memory read flaw was found in libxml2. A remote attacker
could provide a specially-crafted XML file that, when opened in an
application linked against libxml2, would cause the application to crash.
(CVE-2011-3905)

Note: Red Hat does not ship any applications that use libxml2 in a way that
would allow the CVE-2011-1944, CVE-2010-4008, and CVE-2011-2834 flaws to be
exploited; however, third-party applications may allow XPath expressions to
be passed which could trigger these flaws.

Red Hat would like to thank the Google Security Team for reporting the
CVE-2010-4008 issue. Upstream acknowledges Bui Quang Minh from Bkis as the
original reporter of CVE-2010-4008.

All users of libxml2 are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. The desktop must
be restarted (log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-11" />
        <updated date="2012-01-11" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4008.html">CVE-2010-4008</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0216.html">CVE-2011-0216</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1944.html">CVE-2011-1944</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2834.html">CVE-2011-2834</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3905.html">CVE-2011-3905</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3919.html">CVE-2011-3919</cve>
        <bugzilla href="http://bugzilla.redhat.com/645341" id="645341">CVE-2010-4008 libxml2: Crash (stack frame overflow or NULL pointer dereference) by traversal of XPath axis</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/709747" id="709747">CVE-2011-1944 libxml, libxml2: Heap-based buffer overflow by adding new namespace node to an existing nodeset or merging nodesets</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/724906" id="724906">CVE-2011-0216 libxml2: Off-by-one error leading to heap-based buffer overflow in encoding</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/735751" id="735751">CVE-2011-2834 libxml2: double-free caused by malformed XPath expression in XSLT</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/767387" id="767387">CVE-2011-3905 libxml2 out of bounds read</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771896" id="771896">CVE-2011-3919 libxml2: Heap-based buffer overflow when decoding an entity reference with a long name</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120017006" comment="libxml2-python is earlier than 0:2.6.26-2.1.12.el5_7.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120017007" comment="libxml2-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120017002" comment="libxml2 is earlier than 0:2.6.26-2.1.12.el5_7.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120017003" comment="libxml2 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120017004" comment="libxml2-devel is earlier than 0:2.6.26-2.1.12.el5_7.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120017005" comment="libxml2-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120018" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0018: libxml2 security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0018-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0018.html" />
      <reference source="CVE" ref_id="CVE-2011-3905" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3905.html" />
      <reference source="CVE" ref_id="CVE-2011-3919" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3919.html" />
    <description>The libxml2 library is a development toolbox providing the implementation
of various XML standards.

A heap-based buffer overflow flaw was found in the way libxml2 decoded
entity references with long names. A remote attacker could provide a
specially-crafted XML file that, when opened in an application linked
against libxml2, would cause the application to crash or, potentially,
execute arbitrary code with the privileges of the user running the
application. (CVE-2011-3919)

An out-of-bounds memory read flaw was found in libxml2. A remote attacker
could provide a specially-crafted XML file that, when opened in an
application linked against libxml2, would cause the application to crash.
(CVE-2011-3905)

All users of libxml2 are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. The desktop must
be restarted (log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-11" />
        <updated date="2012-01-11" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3905.html">CVE-2011-3905</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3919.html">CVE-2011-3919</cve>
        <bugzilla href="http://bugzilla.redhat.com/767387" id="767387">CVE-2011-3905 libxml2 out of bounds read</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771896" id="771896">CVE-2011-3919 libxml2: Heap-based buffer overflow when decoding an entity reference with a long name</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120018007" comment="libxml2-python is earlier than 0:2.7.6-4.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120018008" comment="libxml2-python is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120018005" comment="libxml2 is earlier than 0:2.7.6-4.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120018006" comment="libxml2 is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120018009" comment="libxml2-devel is earlier than 0:2.7.6-4.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120018010" comment="libxml2-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120018011" comment="libxml2-static is earlier than 0:2.7.6-4.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120018012" comment="libxml2-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120019" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0019: php53 and php security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0019-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0019.html" />
      <reference source="CVE" ref_id="CVE-2011-4566" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4566.html" />
      <reference source="CVE" ref_id="CVE-2011-4885" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4885.html" />
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

It was found that the hashing routine used by PHP arrays was susceptible
to predictable hash collisions. If an HTTP POST request to a PHP
application contained many parameters whose names map to the same hash
value, a large amount of CPU time would be consumed. This flaw has been
mitigated by adding a new configuration directive, max_input_vars, that
limits the maximum number of parameters processed per request. By
default, max_input_vars is set to 1000. (CVE-2011-4885)

An integer overflow flaw was found in the PHP exif extension. On 32-bit
systems, a specially-crafted image file could cause the PHP interpreter to
crash or disclose portions of its memory when a PHP script tries to extract
Exchangeable image file format (Exif) metadata from the image file.
(CVE-2011-4566)

Red Hat would like to thank oCERT for reporting CVE-2011-4885. oCERT
acknowledges Julian Wälde and Alexander Klink as the original reporters of
CVE-2011-4885.

All php53 and php users should upgrade to these updated packages, which
contain backported patches to resolve these issues. After installing the
updated packages, the httpd daemon must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-11" />
        <updated date="2012-01-11" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4566.html">CVE-2011-4566</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4885.html">CVE-2011-4885</cve>
        <bugzilla href="http://bugzilla.redhat.com/750547" id="750547">CVE-2011-4885 php: hash table collisions CPU usage DoS (oCERT-2011-003)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/758413" id="758413">CVE-2011-4566 php: integer overflow in exif_process_IFD_TAG() may lead to DoS or arbitrary memory disclosure</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019055" comment="php-tidy is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019056" comment="php-tidy is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019033" comment="php-soap is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019034" comment="php-soap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019025" comment="php-embedded is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019026" comment="php-embedded is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019021" comment="php-xmlrpc is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019022" comment="php-xmlrpc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019029" comment="php-odbc is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019030" comment="php-odbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019019" comment="php-pspell is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019020" comment="php-pspell is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019011" comment="php-common is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019012" comment="php-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019005" comment="php is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019006" comment="php is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019049" comment="php-cli is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019050" comment="php-cli is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019045" comment="php-process is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019046" comment="php-process is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019017" comment="php-mysql is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019018" comment="php-mysql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019051" comment="php-mbstring is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019052" comment="php-mbstring is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019047" comment="php-pgsql is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019048" comment="php-pgsql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019015" comment="php-enchant is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019016" comment="php-enchant is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019013" comment="php-xml is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019014" comment="php-xml is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019023" comment="php-dba is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019024" comment="php-dba is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019053" comment="php-zts is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019054" comment="php-zts is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019039" comment="php-bcmath is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019040" comment="php-bcmath is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019031" comment="php-snmp is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019032" comment="php-snmp is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019043" comment="php-gd is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019044" comment="php-gd is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019041" comment="php-devel is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019042" comment="php-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019027" comment="php-intl is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019028" comment="php-intl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019037" comment="php-ldap is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019038" comment="php-ldap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019035" comment="php-pdo is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019036" comment="php-pdo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019009" comment="php-imap is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019010" comment="php-imap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019007" comment="php-recode is earlier than 0:5.3.3-3.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019008" comment="php-recode is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019080" comment="php53-intl is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019081" comment="php53-intl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019064" comment="php53-gd is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019065" comment="php53-gd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019060" comment="php53-imap is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019061" comment="php53-imap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019096" comment="php53-cli is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019097" comment="php53-cli is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019090" comment="php53-bcmath is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019091" comment="php53-bcmath is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019086" comment="php53-pgsql is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019087" comment="php53-pgsql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019084" comment="php53-mysql is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019085" comment="php53-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019092" comment="php53-odbc is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019093" comment="php53-odbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019088" comment="php53-process is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019089" comment="php53-process is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019070" comment="php53-xml is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019071" comment="php53-xml is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019058" comment="php53 is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019059" comment="php53 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019072" comment="php53-xmlrpc is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019073" comment="php53-xmlrpc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019066" comment="php53-dba is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019067" comment="php53-dba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019098" comment="php53-pspell is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019099" comment="php53-pspell is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019082" comment="php53-common is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019083" comment="php53-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019076" comment="php53-devel is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019077" comment="php53-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019094" comment="php53-snmp is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019095" comment="php53-snmp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019078" comment="php53-pdo is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019079" comment="php53-pdo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019074" comment="php53-soap is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019075" comment="php53-soap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019062" comment="php53-ldap is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019063" comment="php53-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120019068" comment="php53-mbstring is earlier than 0:5.3.3-1.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019069" comment="php53-mbstring is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120033" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0033: php security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0033-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0033.html" />
      <reference source="CVE" ref_id="CVE-2011-0708" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0708.html" />
      <reference source="CVE" ref_id="CVE-2011-1148" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1148.html" />
      <reference source="CVE" ref_id="CVE-2011-1466" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1466.html" />
      <reference source="CVE" ref_id="CVE-2011-1469" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1469.html" />
      <reference source="CVE" ref_id="CVE-2011-2202" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2202.html" />
      <reference source="CVE" ref_id="CVE-2011-4566" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4566.html" />
      <reference source="CVE" ref_id="CVE-2011-4885" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4885.html" />
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

It was found that the hashing routine used by PHP arrays was susceptible
to predictable hash collisions. If an HTTP POST request to a PHP
application contained many parameters whose names map to the same hash
value, a large amount of CPU time would be consumed. This flaw has been
mitigated by adding a new configuration directive, max_input_vars, that
limits the maximum number of parameters processed per request. By
default, max_input_vars is set to 1000. (CVE-2011-4885)

A use-after-free flaw was found in the PHP substr_replace() function. If a
PHP script used the same variable as multiple function arguments, a remote
attacker could possibly use this to crash the PHP interpreter or, possibly,
execute arbitrary code. (CVE-2011-1148)

An integer overflow flaw was found in the PHP exif extension. On 32-bit
systems, a specially-crafted image file could cause the PHP interpreter to
crash or disclose portions of its memory when a PHP script tries to extract
Exchangeable image file format (Exif) metadata from the image file.
(CVE-2011-4566)

An insufficient input validation flaw, leading to a buffer over-read, was
found in the PHP exif extension. A specially-crafted image file could cause
the PHP interpreter to crash when a PHP script tries to extract
Exchangeable image file format (Exif) metadata from the image file.
(CVE-2011-0708)

An integer overflow flaw was found in the PHP calendar extension. A remote
attacker able to make a PHP script call SdnToJulian() with a large value
could cause the PHP interpreter to crash. (CVE-2011-1466)

A bug in the PHP Streams component caused the PHP interpreter to crash if
an FTP wrapper connection was made through an HTTP proxy. A remote attacker
could possibly trigger this issue if a PHP script accepted an untrusted URL
to connect to. (CVE-2011-1469)

An off-by-one flaw was found in PHP. If an attacker uploaded a file with a
specially-crafted file name it could cause a PHP script to attempt to write
a file to the root (/) directory. By default, PHP runs as the "apache"
user, preventing it from writing to the root directory. (CVE-2011-2202)

Red Hat would like to thank oCERT for reporting CVE-2011-4885. oCERT
acknowledges Julian Wälde and Alexander Klink as the original reporters of
CVE-2011-4885.

All php users should upgrade to these updated packages, which contain
backported patches to resolve these issues. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-18" />
        <updated date="2012-01-18" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0708.html">CVE-2011-0708</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1148.html">CVE-2011-1148</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1466.html">CVE-2011-1466</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1469.html">CVE-2011-1469</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2202.html">CVE-2011-2202</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4566.html">CVE-2011-4566</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4885.html">CVE-2011-4885</cve>
        <bugzilla href="http://bugzilla.redhat.com/680972" id="680972">CVE-2011-0708 php: buffer over-read in Exif extension</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/688958" id="688958">CVE-2011-1148 php: use-after-free vulnerability in substr_replace()</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/689386" id="689386">CVE-2011-1466 php: Crash by converting serial day numbers (SDN) into Julian calendar</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/690905" id="690905">CVE-2011-1469 php: DoS when using HTTP proxy with the FTP wrapper</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/713194" id="713194">CVE-2011-2202 php: file path injection vulnerability in RFC1867 file upload filename</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/750547" id="750547">CVE-2011-4885 php: hash table collisions CPU usage DoS (oCERT-2011-003)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/758413" id="758413">CVE-2011-4566 php: integer overflow in exif_process_IFD_TAG() may lead to DoS or arbitrary memory disclosure</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033034" comment="php-soap is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033035" comment="php-soap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033022" comment="php-xmlrpc is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033023" comment="php-xmlrpc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033012" comment="php-common is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033013" comment="php-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033008" comment="php-odbc is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033009" comment="php-odbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033002" comment="php is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033003" comment="php is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033036" comment="php-cli is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033037" comment="php-cli is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033016" comment="php-mysql is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033017" comment="php-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033018" comment="php-mbstring is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033019" comment="php-mbstring is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033028" comment="php-pgsql is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033029" comment="php-pgsql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033014" comment="php-ncurses is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033015" comment="php-ncurses is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033006" comment="php-xml is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033007" comment="php-xml is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033024" comment="php-dba is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033025" comment="php-dba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033032" comment="php-snmp is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033033" comment="php-snmp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033020" comment="php-bcmath is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033021" comment="php-bcmath is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033026" comment="php-gd is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033027" comment="php-gd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033004" comment="php-devel is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033005" comment="php-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033038" comment="php-ldap is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033039" comment="php-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033030" comment="php-imap is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033031" comment="php-imap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120033010" comment="php-pdo is earlier than 0:5.1.6-27.el5_7.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033011" comment="php-pdo is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120034" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0034: java-1.6.0-ibm security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0034-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0034.html" />
      <reference source="CVE" ref_id="CVE-2011-3389" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3389.html" />
      <reference source="CVE" ref_id="CVE-2011-3516" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3516.html" />
      <reference source="CVE" ref_id="CVE-2011-3521" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3521.html" />
      <reference source="CVE" ref_id="CVE-2011-3544" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3544.html" />
      <reference source="CVE" ref_id="CVE-2011-3545" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3545.html" />
      <reference source="CVE" ref_id="CVE-2011-3546" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3546.html" />
      <reference source="CVE" ref_id="CVE-2011-3547" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3547.html" />
      <reference source="CVE" ref_id="CVE-2011-3548" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3548.html" />
      <reference source="CVE" ref_id="CVE-2011-3549" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3549.html" />
      <reference source="CVE" ref_id="CVE-2011-3550" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3550.html" />
      <reference source="CVE" ref_id="CVE-2011-3551" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3551.html" />
      <reference source="CVE" ref_id="CVE-2011-3552" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3552.html" />
      <reference source="CVE" ref_id="CVE-2011-3553" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3553.html" />
      <reference source="CVE" ref_id="CVE-2011-3554" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3554.html" />
      <reference source="CVE" ref_id="CVE-2011-3556" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3556.html" />
      <reference source="CVE" ref_id="CVE-2011-3557" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3557.html" />
      <reference source="CVE" ref_id="CVE-2011-3560" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3560.html" />
      <reference source="CVE" ref_id="CVE-2011-3561" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3561.html" />
    <description>The IBM Java SE version 6 release includes the IBM Java 6 Runtime
Environment and the IBM Java 6 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 6 Runtime
Environment and the IBM Java 6 Software Development Kit. Detailed
vulnerability descriptions are linked from the IBM "Security alerts" page,
listed in the References section. (CVE-2011-3389, CVE-2011-3516,
CVE-2011-3521, CVE-2011-3544, CVE-2011-3545, CVE-2011-3546, CVE-2011-3547,
CVE-2011-3548, CVE-2011-3549, CVE-2011-3550, CVE-2011-3551, CVE-2011-3552,
CVE-2011-3553, CVE-2011-3554, CVE-2011-3556, CVE-2011-3557, CVE-2011-3560,
CVE-2011-3561)

All users of java-1.6.0-ibm are advised to upgrade to these updated
packages, containing the IBM Java 6 SR10 release. All running instances
of IBM Java must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-18" />
        <updated date="2012-01-18" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3389.html">CVE-2011-3389</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3516.html">CVE-2011-3516</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3521.html">CVE-2011-3521</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3544.html">CVE-2011-3544</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3545.html">CVE-2011-3545</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3546.html">CVE-2011-3546</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3547.html">CVE-2011-3547</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3548.html">CVE-2011-3548</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3549.html">CVE-2011-3549</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3550.html">CVE-2011-3550</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3551.html">CVE-2011-3551</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3552.html">CVE-2011-3552</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3553.html">CVE-2011-3553</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3554.html">CVE-2011-3554</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3556.html">CVE-2011-3556</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3557.html">CVE-2011-3557</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3560.html">CVE-2011-3560</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3561.html">CVE-2011-3561</cve>
        <bugzilla href="http://bugzilla.redhat.com/737506" id="737506">CVE-2011-3389 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745379" id="745379">CVE-2011-3560 OpenJDK: missing checkSetFactory calls in HttpsURLConnection (JSSE, 7096936)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745387" id="745387">CVE-2011-3547 OpenJDK: InputStream skip() information leak (Networking/IO, 7000600)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745391" id="745391">CVE-2011-3551 OpenJDK: Java2D TransformHelper integer overflow (2D, 7023640)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745397" id="745397">CVE-2011-3552 OpenJDK: excessive default UDP socket limit under SecurityManager (Networking, 7032417)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745399" id="745399">CVE-2011-3544 OpenJDK: missing SecurityManager checks in scripting engine (Scripting, 7046823)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745442" id="745442">CVE-2011-3521 OpenJDK: IIOP deserialization code execution (Deserialization, 7055902)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745447" id="745447">CVE-2011-3554 OpenJDK: insufficient pack200 JAR files uncompress error checks (Runtime, 7057857)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745459" id="745459">CVE-2011-3556 OpenJDK: RMI DGC server remote code execution (RMI, 7077466)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745464" id="745464">CVE-2011-3557 OpenJDK: RMI registry privileged code execution (RMI, 7083012)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745473" id="745473">CVE-2011-3548 OpenJDK: mutable static AWTKeyStroke.ctor (AWT, 7019773)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745476" id="745476">CVE-2011-3553 OpenJDK: JAX-WS stack-traces information leak (JAX-WS, 7046794)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747191" id="747191">CVE-2011-3545 Oracle/IBM JDK: unspecified vulnerability fixed in 6u29 (Sound)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747198" id="747198">CVE-2011-3549 Oracle/IBM JDK: unspecified vulnerability fixed in 6u29 (Swing)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747200" id="747200">CVE-2011-3550 Oracle/IBM JDK: unspecified vulnerability fixed in 6u29 (AWT)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747203" id="747203">CVE-2011-3516 Oracle/IBM JDK: unspecified vulnerability fixed in 6u29 (Deployment)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747205" id="747205">CVE-2011-3546 Oracle/IBM JDK: unspecified vulnerability fixed in 6u29 (Deployment)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/747208" id="747208">CVE-2011-3561 Oracle/IBM JDK: unspecified vulnerability fixed in 6u29 (Deployment)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034010" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.10.0-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034011" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034004" comment="java-1.6.0-ibm-accessibility is earlier than 1:1.6.0.10.0-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034005" comment="java-1.6.0-ibm-accessibility is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034014" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.10.0-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034015" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034006" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.10.0-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034007" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034002" comment="java-1.6.0-ibm is earlier than 1:1.6.0.10.0-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034003" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034016" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.10.0-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034017" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034012" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.10.0-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034013" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034008" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.10.0-1jpp.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034009" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034030" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.10.0-1jpp.2.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034031" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034034" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.10.0-1jpp.2.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034035" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034032" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.10.0-1jpp.2.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034033" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034022" comment="java-1.6.0-ibm is earlier than 1:1.6.0.10.0-1jpp.2.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034023" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034026" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.10.0-1jpp.2.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034027" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034028" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.10.0-1jpp.2.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034029" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120034024" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.10.0-1jpp.2.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034025" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120050" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0050: qemu-kvm security, bug fix, and enhancement update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0050-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0050.html" />
      <reference source="CVE" ref_id="CVE-2012-0029" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0029.html" />
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. qemu-kvm is the user-space component
for running virtual machines using KVM.

A heap overflow flaw was found in the way QEMU-KVM emulated the e1000
network interface card. A privileged guest user in a virtual machine whose
network interface is configured to use the e1000 emulated driver could use
this flaw to crash the host or, possibly, escalate their privileges on the
host. (CVE-2012-0029)

Red Hat would like to thank Nicolae Mogoreanu for reporting this issue.

This update also fixes the following bug:

* qemu-kvm has a "scsi" option, to be used, for example, with the
"-device" option: "-device virtio-blk-pci,drive=[drive name],scsi=off".
Previously, however, it only masked the feature bit, and did not reject
SCSI commands if a malicious guest ignored the feature bit and issued a
request. This update corrects this issue. The "scsi=off" option can be
used to mitigate the virtualization aspect of CVE-2011-4127 before the
RHSA-2011:1849 kernel update is installed on the host.

This mitigation is only required if you do not have the RHSA-2011:1849
kernel update installed on the host and you are using raw format virtio
disks backed by a partition or LVM volume.

If you run guests by invoking /usr/libexec/qemu-kvm directly, use the
"-global virtio-blk-pci.scsi=off" option to apply the mitigation. If you
are using libvirt, as recommended by Red Hat, and have the RHBA-2012:0013
libvirt update installed, no manual action is required: guests will
automatically use "scsi=off". (BZ#767721)

Note: After installing the RHSA-2011:1849 kernel update, SCSI requests
issued by guests via the SG_IO IOCTL will not be passed to the underlying
block device when using raw format virtio disks backed by a partition or
LVM volume, even if "scsi=on" is used.

As well, this update adds the following enhancement:

* Prior to this update, qemu-kvm was not built with RELRO or PIE support.
qemu-kvm is now built with full RELRO and PIE support as a security
enhancement. (BZ#767906)

All users of qemu-kvm should upgrade to these updated packages, which
correct these issues and add this enhancement. After installing this
update, shut down all running virtual machines. Once all virtual machines
have shut down, start them again for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-23" />
        <updated date="2012-01-23" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0029.html">CVE-2012-0029</cve>
        <bugzilla href="http://bugzilla.redhat.com/772075" id="772075">CVE-2012-0029 qemu-kvm: e1000: process_tx_desc legacy mode packets heap overflow</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120050009" comment="qemu-kvm-tools is earlier than 2:0.12.1.2-2.209.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120050010" comment="qemu-kvm-tools is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120050005" comment="qemu-kvm is earlier than 2:0.12.1.2-2.209.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120050006" comment="qemu-kvm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120050007" comment="qemu-img is earlier than 2:0.12.1.2-2.209.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120050008" comment="qemu-img is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120051" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0051: kvm security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0051-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0051.html" />
      <reference source="CVE" ref_id="CVE-2011-4622" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4622.html" />
      <reference source="CVE" ref_id="CVE-2012-0029" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0029.html" />
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. KVM is a Linux kernel module built for
the standard Red Hat Enterprise Linux kernel.

A heap overflow flaw was found in the way QEMU-KVM emulated the e1000
network interface card. A privileged guest user in a virtual machine whose
network interface is configured to use the e1000 emulated driver could use
this flaw to crash the host or, possibly, escalate their privileges on the
host. (CVE-2012-0029)

A flaw was found in the way the KVM subsystem of a Linux kernel handled PIT
(Programmable Interval Timer) IRQs (interrupt requests) when there was no
virtual interrupt controller set up. A malicious user in the kvm group on
the host could force this situation to occur, resulting in the host
crashing. (CVE-2011-4622)

Red Hat would like to thank Nicolae Mogoreanu for reporting CVE-2012-0029.

All KVM users should upgrade to these updated packages, which contain
backported patches to correct these issues. Note: The procedure in the
Solution section must be performed before this update will take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-23" />
        <updated date="2012-01-23" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4622.html">CVE-2011-4622</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0029.html">CVE-2012-0029</cve>
        <bugzilla href="http://bugzilla.redhat.com/769721" id="769721">CVE-2011-4622 kernel: kvm: pit timer with no irqchip crashes the system</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/772075" id="772075">CVE-2012-0029 qemu-kvm: e1000: process_tx_desc legacy mode packets heap overflow</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120051002" comment="kvm is earlier than 0:83-239.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051003" comment="kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120051006" comment="kmod-kvm is earlier than 0:83-239.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051007" comment="kmod-kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120051010" comment="kvm-tools is earlier than 0:83-239.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051011" comment="kvm-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120051008" comment="kmod-kvm-debug is earlier than 0:83-239.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051009" comment="kmod-kvm-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120051004" comment="kvm-qemu-img is earlier than 0:83-239.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051005" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120052" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0052: kernel security and bug fix update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0052-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0052.html" />
      <reference source="CVE" ref_id="CVE-2012-0056" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0056.html" />
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issue:

* It was found that permissions were not checked properly in the Linux
kernel when handling the /proc/[pid]/mem writing functionality. A local,
unprivileged user could use this flaw to escalate their privileges. Refer
to Red Hat Knowledgebase article DOC-69129, linked to in the References,
for further information. (CVE-2012-0056, Important)

Red Hat would like to thank Jüri Aedla for reporting this issue.

This update fixes the following bugs:

* The RHSA-2011:1849 kernel update introduced a bug in the Linux kernel
scheduler, causing a "WARNING: at kernel/sched.c:5915 thread_return"
message and a call trace to be logged. This message was harmless, and was
not due to any system malfunctions or adverse behavior. With this update,
the WARN_ON_ONCE() call in the scheduler that caused this harmless message
has been removed. (BZ#768288)

* The RHSA-2011:1530 kernel update introduced a regression in the way
the Linux kernel maps ELF headers for kernel modules into kernel memory.
If a third-party kernel module is compiled on a Red Hat Enterprise Linux
system with a kernel prior to RHSA-2011:1530, then loading that module on
a system with RHSA-2011:1530 kernel would result in corruption of one byte
in the memory reserved for the module. In some cases, this could prevent
the module from functioning correctly. (BZ#769595)

* On some SMP systems the tsc may erroneously be marked as unstable during
early system boot or while the system is under heavy load. A "Clocksource
tsc unstable" message was logged when this occurred. As a result the system
would switch to the slower access, but higher precision HPET clock.

The "tsc=reliable" kernel parameter is supposed to avoid this problem by
indicating that the system has a known good clock, however, the parameter
only affected run time checks.  A fix has been put in to avoid the boot
time checks so that the TSC remains as the clock for the duration of
system runtime. (BZ#755867)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-23" />
        <updated date="2012-01-23" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0056.html">CVE-2012-0056</cve>
        <bugzilla href="http://bugzilla.redhat.com/782642" id="782642">CVE-2012-0056 kernel: proc: /proc/&lt;pid>/mem mem_write insufficient permission checking</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052011" comment="perf is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052012" comment="perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052009" comment="kernel-headers is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052010" comment="kernel-headers is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052005" comment="kernel is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052006" comment="kernel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052027" comment="kernel-doc is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052028" comment="kernel-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052025" comment="kernel-firmware is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052026" comment="kernel-firmware is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052013" comment="python-perf is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052014" comment="python-perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052015" comment="kernel-devel is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052016" comment="kernel-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052021" comment="kernel-kdump is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052022" comment="kernel-kdump is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052019" comment="kernel-debug is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052020" comment="kernel-debug is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052017" comment="kernel-debug-devel is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052018" comment="kernel-debug-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052023" comment="kernel-kdump-devel is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052024" comment="kernel-kdump-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120052007" comment="kernel-bootwrapper is earlier than 0:2.6.32-220.4.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052008" comment="kernel-bootwrapper is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120058" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0058: glibc security and bug fix update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0058-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0058.html" />
      <reference source="CVE" ref_id="CVE-2009-5029" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-5029.html" />
      <reference source="CVE" ref_id="CVE-2011-4609" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4609.html" />
    <description>The glibc packages contain the standard C libraries used by multiple
programs on the system. These packages contain the standard C and the
standard math libraries. Without these two libraries, a Linux system cannot
function properly.

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way the glibc library read timezone files. If a
carefully-crafted timezone file was loaded by an application linked against
glibc, it could cause the application to crash or, potentially, execute
arbitrary code with the privileges of the user running the application.
(CVE-2009-5029)

A denial of service flaw was found in the remote procedure call (RPC)
implementation in glibc. A remote attacker able to open a large number of
connections to an RPC service that is using the RPC implementation from
glibc, could use this flaw to make that service use an excessive amount of
CPU time. (CVE-2011-4609)

This update also fixes the following bugs:

* glibc had incorrect information for numeric separators and groupings for
specific French, Spanish, and German locales. Therefore, applications
utilizing glibc's locale support printed numbers with the wrong separators
and groupings when those locales were in use. With this update, the
separator and grouping information has been fixed. (BZ#754116)

* The RHBA-2011:1179 glibc update introduced a regression, causing glibc to
incorrectly parse groups with more than 126 members, resulting in
applications such as "id" failing to list all the groups a particular user
was a member of. With this update, group parsing has been fixed.
(BZ#766484)

* glibc incorrectly allocated too much memory due to a race condition
within its own malloc routines. This could cause a multi-threaded
application to allocate more memory than was expected. With this update,
the race condition has been fixed, and malloc's behavior is now consistent
with the documentation regarding the MALLOC_ARENA_TEST and MALLOC_ARENA_MAX
environment variables. (BZ#769594)

Users should upgrade to these updated packages, which contain backported
patches to resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-24" />
        <updated date="2012-01-24" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2009-5029.html">CVE-2009-5029</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4609.html">CVE-2011-4609</cve>
        <bugzilla href="http://bugzilla.redhat.com/761245" id="761245">CVE-2009-5029 glibc: __tzfile_read integer overflow to buffer overflow</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/767299" id="767299">CVE-2011-4609 glibc: svc_run() produces high cpu usage when accept() fails with EMFILE error</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120058017" comment="glibc-common is earlier than 0:2.12-1.47.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058018" comment="glibc-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120058011" comment="glibc-headers is earlier than 0:2.12-1.47.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058012" comment="glibc-headers is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120058015" comment="glibc-static is earlier than 0:2.12-1.47.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058016" comment="glibc-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120058013" comment="glibc-devel is earlier than 0:2.12-1.47.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058014" comment="glibc-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120058005" comment="glibc is earlier than 0:2.12-1.47.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058006" comment="glibc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120058007" comment="nscd is earlier than 0:2.12-1.47.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058008" comment="nscd is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120058009" comment="glibc-utils is earlier than 0:2.12-1.47.el6_2.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058010" comment="glibc-utils is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120059" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0059: openssl security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0059-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0059.html" />
      <reference source="CVE" ref_id="CVE-2011-4108" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4108.html" />
      <reference source="CVE" ref_id="CVE-2011-4576" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4576.html" />
      <reference source="CVE" ref_id="CVE-2011-4577" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4577.html" />
      <reference source="CVE" ref_id="CVE-2011-4619" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4619.html" />
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

It was discovered that the Datagram Transport Layer Security (DTLS)
protocol implementation in OpenSSL leaked timing information when
performing certain operations. A remote attacker could possibly use this
flaw to retrieve plain text from the encrypted packets by using a DTLS
server as a padding oracle. (CVE-2011-4108)

An information leak flaw was found in the SSL 3.0 protocol implementation
in OpenSSL. Incorrect initialization of SSL record padding bytes could
cause an SSL client or server to send a limited amount of possibly
sensitive data to its SSL peer via the encrypted connection.
(CVE-2011-4576)

A denial of service flaw was found in the RFC 3779 implementation in
OpenSSL. A remote attacker could use this flaw to make an application using
OpenSSL exit unexpectedly by providing a specially-crafted X.509
certificate that has malformed RFC 3779 extension data. (CVE-2011-4577)

It was discovered that OpenSSL did not limit the number of TLS/SSL
handshake restarts required to support Server Gated Cryptography. A remote
attacker could use this flaw to make a TLS/SSL server using OpenSSL consume
an excessive amount of CPU by continuously restarting the handshake.
(CVE-2011-4619)

All OpenSSL users should upgrade to these updated packages, which contain
backported patches to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-24" />
        <updated date="2012-01-24" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4108.html">CVE-2011-4108</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4576.html">CVE-2011-4576</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4577.html">CVE-2011-4577</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4619.html">CVE-2011-4619</cve>
        <bugzilla href="http://bugzilla.redhat.com/771770" id="771770">CVE-2011-4108 openssl: DTLS plaintext recovery attack</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771775" id="771775">CVE-2011-4576 openssl: uninitialized SSL 3.0 padding</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771778" id="771778">CVE-2011-4577 openssl: malformed RFC 3779 data can cause assertion failures</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771780" id="771780">CVE-2011-4619 openssl: SGC restart DoS attack</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120059005" comment="openssl is earlier than 0:1.0.0-20.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059006" comment="openssl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120059007" comment="openssl-perl is earlier than 0:1.0.0-20.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059008" comment="openssl-perl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120059011" comment="openssl-static is earlier than 0:1.0.0-20.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059012" comment="openssl-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120059009" comment="openssl-devel is earlier than 0:1.0.0-20.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059010" comment="openssl-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120060" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0060: openssl security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0060-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0060.html" />
      <reference source="CVE" ref_id="CVE-2011-4108" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4108.html" />
      <reference source="CVE" ref_id="CVE-2011-4109" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4109.html" />
      <reference source="CVE" ref_id="CVE-2011-4576" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4576.html" />
      <reference source="CVE" ref_id="CVE-2011-4619" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4619.html" />
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

It was discovered that the Datagram Transport Layer Security (DTLS)
protocol implementation in OpenSSL leaked timing information when
performing certain operations. A remote attacker could possibly use this
flaw to retrieve plain text from the encrypted packets by using a DTLS
server as a padding oracle. (CVE-2011-4108)

A double free flaw was discovered in the policy checking code in OpenSSL.
A remote attacker could use this flaw to crash an application that uses
OpenSSL by providing an X.509 certificate that has specially-crafted
policy extension data. (CVE-2011-4109)

An information leak flaw was found in the SSL 3.0 protocol implementation
in OpenSSL. Incorrect initialization of SSL record padding bytes could
cause an SSL client or server to send a limited amount of possibly
sensitive data to its SSL peer via the encrypted connection.
(CVE-2011-4576)

It was discovered that OpenSSL did not limit the number of TLS/SSL
handshake restarts required to support Server Gated Cryptography. A remote
attacker could use this flaw to make a TLS/SSL server using OpenSSL consume
an excessive amount of CPU by continuously restarting the handshake.
(CVE-2011-4619)

All OpenSSL users should upgrade to these updated packages, which contain
backported patches to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-24" />
        <updated date="2012-01-24" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4108.html">CVE-2011-4108</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4109.html">CVE-2011-4109</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4576.html">CVE-2011-4576</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4619.html">CVE-2011-4619</cve>
        <bugzilla href="http://bugzilla.redhat.com/771770" id="771770">CVE-2011-4108 openssl: DTLS plaintext recovery attack</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771771" id="771771">CVE-2011-4109 openssl: double-free in policy checks</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771775" id="771775">CVE-2011-4576 openssl: uninitialized SSL 3.0 padding</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771780" id="771780">CVE-2011-4619 openssl: SGC restart DoS attack</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120060002" comment="openssl is earlier than 0:0.9.8e-20.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060003" comment="openssl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120060004" comment="openssl-perl is earlier than 0:0.9.8e-20.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060005" comment="openssl-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120060006" comment="openssl-devel is earlier than 0:0.9.8e-20.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060007" comment="openssl-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120062" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0062: t1lib security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0062-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0062.html" />
      <reference source="CVE" ref_id="CVE-2010-2642" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2642.html" />
      <reference source="CVE" ref_id="CVE-2011-0433" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0433.html" />
      <reference source="CVE" ref_id="CVE-2011-0764" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0764.html" />
      <reference source="CVE" ref_id="CVE-2011-1552" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1552.html" />
      <reference source="CVE" ref_id="CVE-2011-1553" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1553.html" />
      <reference source="CVE" ref_id="CVE-2011-1554" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1554.html" />
    <description>The t1lib library allows you to rasterize bitmaps from PostScript Type 1
fonts.

Two heap-based buffer overflow flaws were found in the way t1lib processed
Adobe Font Metrics (AFM) files. If a specially-crafted font file was opened
by an application linked against t1lib, it could cause the application to
crash or, potentially, execute arbitrary code with the privileges of the
user running the application. (CVE-2010-2642, CVE-2011-0433)

An invalid pointer dereference flaw was found in t1lib. A specially-crafted
font file could, when opened, cause an application linked against t1lib to
crash or, potentially, execute arbitrary code with the privileges of the
user running the application. (CVE-2011-0764)

A use-after-free flaw was found in t1lib. A specially-crafted font file
could, when opened, cause an application linked against t1lib to crash or,
potentially, execute arbitrary code with the privileges of the user
running the application. (CVE-2011-1553)

An off-by-one flaw was found in t1lib. A specially-crafted font file could,
when opened, cause an application linked against t1lib to crash or,
potentially, execute arbitrary code with the privileges of the user running
the application. (CVE-2011-1554)

An out-of-bounds memory read flaw was found in t1lib. A specially-crafted
font file could, when opened, cause an application linked against t1lib to
crash. (CVE-2011-1552)

Red Hat would like to thank the Evince development team for reporting
CVE-2010-2642. Upstream acknowledges Jon Larimer of IBM X-Force as the
original reporter of CVE-2010-2642.

All users of t1lib are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. All applications linked
against t1lib must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-24" />
        <updated date="2012-01-24" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2642.html">CVE-2010-2642</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0433.html">CVE-2011-0433</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0764.html">CVE-2011-0764</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1552.html">CVE-2011-1552</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1553.html">CVE-2011-1553</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1554.html">CVE-2011-1554</cve>
        <bugzilla href="http://bugzilla.redhat.com/666318" id="666318">CVE-2010-2642 evince, t1lib: Heap based buffer overflow in DVI file AFM font parser</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/679732" id="679732">CVE-2011-0433 evince, t1lib: Heap-based buffer overflow DVI file AFM font parser</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692853" id="692853">CVE-2011-1552 t1lib: invalid read crash via crafted Type 1 font</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692854" id="692854">CVE-2011-1553 t1lib: Use-after-free via crafted Type 1 font</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692856" id="692856">CVE-2011-1554 t1lib: Off-by-one via crafted Type 1 font</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692909" id="692909">CVE-2011-0764 t1lib: Invalid pointer dereference via crafted Type 1 font</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120062005" comment="t1lib is earlier than 0:5.1.2-6.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120062006" comment="t1lib is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120062011" comment="t1lib-apps is earlier than 0:5.1.2-6.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120062012" comment="t1lib-apps is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120062009" comment="t1lib-devel is earlier than 0:5.1.2-6.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120062010" comment="t1lib-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120062007" comment="t1lib-static is earlier than 0:5.1.2-6.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120062008" comment="t1lib-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120069" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0069: ruby security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0069-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0069.html" />
      <reference source="CVE" ref_id="CVE-2011-4815" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4815.html" />
    <description>Ruby is an extensible, interpreted, object-oriented, scripting language. It
has features to process text files and to do system management tasks.

A denial of service flaw was found in the implementation of associative
arrays (hashes) in Ruby. An attacker able to supply a large number of
inputs to a Ruby application (such as HTTP POST request parameters sent to
a web application) that are used as keys when inserting data into an array
could trigger multiple hash function collisions, making array operations
take an excessive amount of CPU time. To mitigate this issue, randomization
has been added to the hash function to reduce the chance of an attacker
successfully causing intentional collisions. (CVE-2011-4815)

Red Hat would like to thank oCERT for reporting this issue. oCERT
acknowledges Julian Wälde and Alexander Klink as the original reporters.

All users of ruby are advised to upgrade to these updated packages, which
contain a backported patch to resolve this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-30" />
        <updated date="2012-01-30" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4815.html">CVE-2011-4815</cve>
        <bugzilla href="http://bugzilla.redhat.com/750564" id="750564">CVE-2011-4815 ruby: hash table collisions CPU usage DoS (oCERT-2011-003)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069019" comment="ruby-ri is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069020" comment="ruby-ri is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069017" comment="ruby-static is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069018" comment="ruby-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069015" comment="ruby-tcltk is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069016" comment="ruby-tcltk is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069011" comment="ruby-libs is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069012" comment="ruby-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069007" comment="ruby-docs is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069008" comment="ruby-docs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069009" comment="ruby-rdoc is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069010" comment="ruby-rdoc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069021" comment="ruby-irb is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069022" comment="ruby-irb is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069005" comment="ruby is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069006" comment="ruby is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120069013" comment="ruby-devel is earlier than 0:1.8.7.352-4.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120069014" comment="ruby-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120070" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0070: ruby security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0070-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0070.html" />
      <reference source="CVE" ref_id="CVE-2011-3009" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3009.html" />
      <reference source="CVE" ref_id="CVE-2011-4815" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4815.html" />
    <description>Ruby is an extensible, interpreted, object-oriented, scripting language. It
has features to process text files and to do system management tasks.

A denial of service flaw was found in the implementation of associative
arrays (hashes) in Ruby. An attacker able to supply a large number of
inputs to a Ruby application (such as HTTP POST request parameters sent to
a web application) that are used as keys when inserting data into an array
could trigger multiple hash function collisions, making array operations
take an excessive amount of CPU time. To mitigate this issue, randomization
has been added to the hash function to reduce the chance of an attacker
successfully causing intentional collisions. (CVE-2011-4815)

It was found that Ruby did not reinitialize the PRNG (pseudorandom number
generator) after forking a child process. This could eventually lead to the
PRNG returning the same result twice. An attacker keeping track of the
values returned by one child process could use this flaw to predict the
values the PRNG would return in other child processes (as long as the
parent process persisted). (CVE-2011-3009)

Red Hat would like to thank oCERT for reporting CVE-2011-4815. oCERT
acknowledges Julian Wälde and Alexander Klink as the original reporters of
CVE-2011-4815.

All users of ruby are advised to upgrade to these updated packages, which
contain backported patches to resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-30" />
        <updated date="2012-01-30" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3009.html">CVE-2011-3009</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4815.html">CVE-2011-4815</cve>
        <bugzilla href="http://bugzilla.redhat.com/722415" id="722415">CVE-2011-2686 CVE-2011-2705 CVE-2011-3009 ruby: Properly initialize the random number generator when forking new process</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/750564" id="750564">CVE-2011-4815 ruby: hash table collisions CPU usage DoS (oCERT-2011-003)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070012" comment="irb is earlier than 0:1.8.1-18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070013" comment="irb is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070014" comment="ruby-mode is earlier than 0:1.8.1-18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070015" comment="ruby-mode is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070010" comment="ruby-docs is earlier than 0:1.8.1-18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070011" comment="ruby-docs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070008" comment="ruby-tcltk is earlier than 0:1.8.1-18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070009" comment="ruby-tcltk is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070004" comment="ruby-libs is earlier than 0:1.8.1-18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070005" comment="ruby-libs is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070002" comment="ruby is earlier than 0:1.8.1-18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070003" comment="ruby is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070006" comment="ruby-devel is earlier than 0:1.8.1-18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070007" comment="ruby-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070027" comment="ruby-ri is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070028" comment="ruby-ri is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070021" comment="ruby-mode is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070022" comment="ruby-mode is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070033" comment="ruby-docs is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070034" comment="ruby-docs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070029" comment="ruby-libs is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070030" comment="ruby-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070023" comment="ruby-tcltk is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070024" comment="ruby-tcltk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070019" comment="ruby-rdoc is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070020" comment="ruby-rdoc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070031" comment="ruby-irb is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070032" comment="ruby-irb is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070017" comment="ruby is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070018" comment="ruby is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120070025" comment="ruby-devel is earlier than 0:1.8.5-22.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120070026" comment="ruby-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120071" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0071: php security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0071-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0071.html" />
      <reference source="CVE" ref_id="CVE-2011-0708" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0708.html" />
      <reference source="CVE" ref_id="CVE-2011-1466" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1466.html" />
      <reference source="CVE" ref_id="CVE-2011-2202" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2202.html" />
      <reference source="CVE" ref_id="CVE-2011-4566" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4566.html" />
      <reference source="CVE" ref_id="CVE-2011-4885" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4885.html" />
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

It was found that the hashing routine used by PHP arrays was susceptible
to predictable hash collisions. If an HTTP POST request to a PHP
application contained many parameters whose names map to the same hash
value, a large amount of CPU time would be consumed. This flaw has been
mitigated by adding a new configuration directive, max_input_vars, that
limits the maximum number of parameters processed per request. By
default, max_input_vars is set to 1000. (CVE-2011-4885)

An integer overflow flaw was found in the PHP exif extension. On 32-bit
systems, a specially-crafted image file could cause the PHP interpreter to
crash or disclose portions of its memory when a PHP script tries to extract
Exchangeable image file format (Exif) metadata from the image file.
(CVE-2011-4566)

An insufficient input validation flaw, leading to a buffer over-read, was
found in the PHP exif extension. A specially-crafted image file could cause
the PHP interpreter to crash when a PHP script tries to extract
Exchangeable image file format (Exif) metadata from the image file.
(CVE-2011-0708)

An integer overflow flaw was found in the PHP calendar extension. A remote
attacker able to make a PHP script call SdnToJulian() with a large value
could cause the PHP interpreter to crash. (CVE-2011-1466)

An off-by-one flaw was found in PHP. If an attacker uploaded a file with a
specially-crafted file name it could cause a PHP script to attempt to write
a file to the root (/) directory. By default, PHP runs as the "apache"
user, preventing it from writing to the root directory. (CVE-2011-2202)

Red Hat would like to thank oCERT for reporting CVE-2011-4885. oCERT
acknowledges Julian Wälde and Alexander Klink as the original reporters of
CVE-2011-4885.

All php users should upgrade to these updated packages, which contain
backported patches to resolve these issues. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-30" />
        <updated date="2012-01-30" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0708.html">CVE-2011-0708</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1466.html">CVE-2011-1466</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2202.html">CVE-2011-2202</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4566.html">CVE-2011-4566</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4885.html">CVE-2011-4885</cve>
        <bugzilla href="http://bugzilla.redhat.com/680972" id="680972">CVE-2011-0708 php: buffer over-read in Exif extension</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/689386" id="689386">CVE-2011-1466 php: Crash by converting serial day numbers (SDN) into Julian calendar</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/713194" id="713194">CVE-2011-2202 php: file path injection vulnerability in RFC1867 file upload filename</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/750547" id="750547">CVE-2011-4885 php: hash table collisions CPU usage DoS (oCERT-2011-003)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/758413" id="758413">CVE-2011-4566 php: integer overflow in exif_process_IFD_TAG() may lead to DoS or arbitrary memory disclosure</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071010" comment="php-xmlrpc is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071011" comment="php-xmlrpc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071020" comment="php-odbc is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071021" comment="php-odbc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071002" comment="php is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071003" comment="php is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071016" comment="php-mysql is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071017" comment="php-mysql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071026" comment="php-mbstring is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071027" comment="php-mbstring is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071024" comment="php-pgsql is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071025" comment="php-pgsql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071004" comment="php-ncurses is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071005" comment="php-ncurses is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071028" comment="php-pear is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071029" comment="php-pear is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071014" comment="php-domxml is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071015" comment="php-domxml is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071008" comment="php-snmp is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071009" comment="php-snmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071022" comment="php-devel is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071023" comment="php-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071018" comment="php-gd is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071019" comment="php-gd is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071012" comment="php-ldap is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071013" comment="php-ldap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120071006" comment="php-imap is earlier than 0:4.3.9-3.35" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071007" comment="php-imap is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120073" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0073: Red Hat Enterprise Linux 4 - 30 day End Of Life Notice (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0073-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0073.html" />
    <description>In accordance with the Red Hat Enterprise Linux Errata Support Policy,
the 7 year life-cycle of Red Hat Enterprise Linux 4 will end on February
29, 2012 and your subscription services for that version will change.
Active Red Hat Enterprise Linux subscribers using Red Hat Enterprise
Linux 4 will have the option to upgrade to currently supported versions
of Red Hat Enterprise Linux and receive the full benefits of the
subscription.

After February 29, 2012, Red Hat will discontinue technical support
services as well as software maintenance services for Red Hat Enterprise
Linux 4 meaning that new bug fixes, security errata and product
enhancements will no longer be provided for the following products:

* Red Hat Enterprise Linux AS 4
* Red Hat Enterprise Linux ES 4
* Red Hat Enterprise Linux WS 4
* Red Hat Desktop 4
* Red Hat Global File System 4
* Red Hat Cluster Suite 4

Customers who choose to continue to deploy Red Hat Enterprise Linux 4
offerings will continue to have access via Red Hat Network (RHN) to the
following content as part of their active Red Hat Enterprise Linux
subscription:

- Previously released bug fixes, security errata and product
  enhancements.
- Red Hat Knowledge Base and other content (whitepapers, reference
  architectures, etc) found in the Red Hat Customer Portal.
- All Red Hat Enterprise Linux 4 documentation.

Customers are strongly encouraged to take advantage of the upgrade
benefits of their active Red Hat Enterprise Linux subscription and
migrate to an active version of Red Hat Enterprise Linux such as
version 5 or 6.

For customers who are unable to migrate off Red Hat Enterprise Linux 4
before its end-of-life date and require software maintenance and/or
technical support, Red Hat offers an optional support extension called
the Extended Life-cycle Support (ELS) Add-On Subscription. The ELS
Subscription provides up to three additional years of limited Software
Maintenance (Production 3 Phase) for Red Hat Enterprise Linux 4 with
unlimited technical support, critical Security Advisories (RHSAs) and
selected Urgent Priority Bug Advisories (RHBAs). For more information,
contact your Red Hat sales representative or channel partner.

Details of the Red Hat Enterprise Linux life-cycle can be found on the
Red Hat website: https://access.redhat.com/support/policy/updates/errata/</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-31" />
        <updated date="2012-01-31" />
        <bugzilla href="http://bugzilla.redhat.com/761581" id="761581">Send Out RHEL 4 30 day EOL Notice</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120073002" comment="redhat-release is earlier than 0:4AS-10.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120073003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120073004" comment="redhat-release is earlier than 0:4ES-10.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120073003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120073005" comment="redhat-release is earlier than 0:4WS-10.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120073003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120073006" comment="redhat-release is earlier than 0:4Desktop-10.7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120073003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120079" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0079: firefox security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0079-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0079.html" />
      <reference source="CVE" ref_id="CVE-2011-3659" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3659.html" />
      <reference source="CVE" ref_id="CVE-2011-3670" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3670.html" />
      <reference source="CVE" ref_id="CVE-2012-0442" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0442.html" />
      <reference source="CVE" ref_id="CVE-2012-0444" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0444.html" />
      <reference source="CVE" ref_id="CVE-2012-0449" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0449.html" />
    <description>Mozilla Firefox is an open source web browser. XULRunner provides the XUL
Runtime environment for Mozilla Firefox.

A use-after-free flaw was found in the way Firefox removed nsDOMAttribute
child nodes. In certain circumstances, due to the premature notification
of AttributeChildRemoved, a malicious script could possibly use this flaw
to cause Firefox to crash or, potentially, execute arbitrary code with the
privileges of the user running Firefox. (CVE-2011-3659)

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2012-0442)

A flaw was found in the way Firefox parsed Ogg Vorbis media files. A web
page containing a malicious Ogg Vorbis media file could cause Firefox to
crash or, potentially, execute arbitrary code with the privileges of the
user running Firefox. (CVE-2012-0444)

A flaw was found in the way Firefox parsed certain Scalable Vector Graphics
(SVG) image files that contained eXtensible Style Sheet Language
Transformations (XSLT). A web page containing a malicious SVG image file
could cause Firefox to crash or, potentially, execute arbitrary code with
the privileges of the user running Firefox. (CVE-2012-0449)

The same-origin policy in Firefox treated http://example.com and
http://[example.com] as interchangeable. A malicious script could possibly
use this flaw to gain access to sensitive information (such as a client's
IP and user e-mail address, or httpOnly cookies) that may be included in
HTTP proxy error replies, generated in response to invalid URLs using
square brackets. (CVE-2011-3670)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 3.6.26. You can find a link to the Mozilla
advisories in the References section of this erratum.

All Firefox users should upgrade to these updated packages, which contain
Firefox version 3.6.26, which corrects these issues. After installing the
update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-31" />
        <updated date="2012-01-31" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3659.html">CVE-2011-3659</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3670.html">CVE-2011-3670</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0442.html">CVE-2012-0442</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0444.html">CVE-2012-0444</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0449.html">CVE-2012-0449</cve>
        <bugzilla href="http://bugzilla.redhat.com/785085" id="785085">CVE-2012-0442 Mozilla: memory safety hazards in 10.0/1.9.2.26 (MFSA 2012-01)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/785464" id="785464">CVE-2011-3670 Mozilla: Same-origin bypass using IPv6-like hostname syntax (MFSA 2012-02)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/785966" id="785966">CVE-2012-0449 Mozilla: Crash when rendering SVG+XSLT (MFSA 2012-08)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/786026" id="786026">CVE-2012-0444 Firefox: Ogg Vorbis Decoding Memory Corruption (MFSA 2012-07)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/786258" id="786258">CVE-2011-3659 Mozilla: child nodes from nsDOMAttribute still accessible after removal of nodes (MFSA 2012-04)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120079005" comment="xulrunner is earlier than 0:1.9.2.26-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079006" comment="xulrunner is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120079007" comment="xulrunner-devel is earlier than 0:1.9.2.26-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079008" comment="xulrunner-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120079009" comment="firefox is earlier than 0:3.6.26-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079010" comment="firefox is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079012" comment="firefox is earlier than 0:3.6.26-2.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079013" comment="firefox is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120079015" comment="xulrunner is earlier than 0:1.9.2.26-1.el5_7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079016" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120079017" comment="xulrunner-devel is earlier than 0:1.9.2.26-1.el5_7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079018" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120079019" comment="firefox is earlier than 0:3.6.26-1.el5_7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079020" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120080" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0080: thunderbird security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0080-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0080.html" />
      <reference source="CVE" ref_id="CVE-2011-3659" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3659.html" />
      <reference source="CVE" ref_id="CVE-2011-3670" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3670.html" />
      <reference source="CVE" ref_id="CVE-2012-0442" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0442.html" />
      <reference source="CVE" ref_id="CVE-2012-0449" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0449.html" />
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

A use-after-free flaw was found in the way Thunderbird removed
nsDOMAttribute child nodes. In certain circumstances, due to the premature
notification of AttributeChildRemoved, a malicious script could possibly
use this flaw to cause Thunderbird to crash or, potentially, execute
arbitrary code with the privileges of the user running Thunderbird.
(CVE-2011-3659)

Several flaws were found in the processing of malformed content. An HTML
mail message containing malicious content could cause Thunderbird to crash
or, potentially, execute arbitrary code with the privileges of the user
running Thunderbird. (CVE-2012-0442)

A flaw was found in the way Thunderbird parsed certain Scalable Vector
Graphics (SVG) image files that contained eXtensible Style Sheet Language
Transformations (XSLT). An HTML mail message containing a malicious SVG
image file could cause Thunderbird to crash or, potentially, execute
arbitrary code with the privileges of the user running Thunderbird.
(CVE-2012-0449)

The same-origin policy in Thunderbird treated http://example.com and
http://[example.com] as interchangeable. A malicious script could possibly
use this flaw to gain access to sensitive information (such as a client's
IP and user e-mail address, or httpOnly cookies) that may be included in
HTTP proxy error replies, generated in response to invalid URLs using
square brackets. (CVE-2011-3670)

Note: The CVE-2011-3659 and CVE-2011-3670 issues cannot be exploited by a
specially-crafted HTML mail message as JavaScript is disabled by default
for mail messages. It could be exploited another way in Thunderbird, for
example, when viewing the full remote content of an RSS feed.

For technical details regarding these flaws, refer to the Mozilla security
advisories for Thunderbird 3.1.18. You can find a link to the Mozilla
advisories in the References section of this erratum.

All Thunderbird users should upgrade to these updated packages, which
contain Thunderbird version 3.1.18, which corrects these issues. After
installing the update, Thunderbird must be restarted for the changes to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-01-31" />
        <updated date="2012-01-31" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3659.html">CVE-2011-3659</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3670.html">CVE-2011-3670</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0442.html">CVE-2012-0442</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0449.html">CVE-2012-0449</cve>
        <bugzilla href="http://bugzilla.redhat.com/785085" id="785085">CVE-2012-0442 Mozilla: memory safety hazards in 10.0/1.9.2.26 (MFSA 2012-01)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/785464" id="785464">CVE-2011-3670 Mozilla: Same-origin bypass using IPv6-like hostname syntax (MFSA 2012-02)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/785966" id="785966">CVE-2012-0449 Mozilla: Crash when rendering SVG+XSLT (MFSA 2012-08)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/786258" id="786258">CVE-2011-3659 Mozilla: child nodes from nsDOMAttribute still accessible after removal of nodes (MFSA 2012-04)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120080005" comment="thunderbird is earlier than 0:3.1.18-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120080006" comment="thunderbird is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120084" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0084: seamonkey security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0084-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0084.html" />
      <reference source="CVE" ref_id="CVE-2011-3670" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3670.html" />
      <reference source="CVE" ref_id="CVE-2012-0442" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0442.html" />
    <description>SeaMonkey is an open source web browser, e-mail and newsgroup client, IRC
chat client, and HTML editor.

A flaw was found in the processing of malformed web content. A web page
containing malicious content could cause SeaMonkey to crash or,
potentially, execute arbitrary code with the privileges of the user running
SeaMonkey. (CVE-2012-0442)

The same-origin policy in SeaMonkey treated http://example.com and
http://[example.com] as interchangeable. A malicious script could possibly
use this flaw to gain access to sensitive information (such as a client's
IP and user e-mail address, or httpOnly cookies) that may be included in
HTTP proxy error replies, generated in response to invalid URLs using
square brackets. (CVE-2011-3670)

All SeaMonkey users should upgrade to these updated packages, which correct
these issues. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-01" />
        <updated date="2012-02-01" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3670.html">CVE-2011-3670</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0442.html">CVE-2012-0442</cve>
        <bugzilla href="http://bugzilla.redhat.com/785085" id="785085">CVE-2012-0442 Mozilla: memory safety hazards in 10.0/1.9.2.26 (MFSA 2012-01)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/785464" id="785464">CVE-2011-3670 Mozilla: Same-origin bypass using IPv6-like hostname syntax (MFSA 2012-02)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120084010" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-78.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084011" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120084004" comment="seamonkey-mail is earlier than 0:1.0.9-78.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084005" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120084002" comment="seamonkey is earlier than 0:1.0.9-78.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120084006" comment="seamonkey-chat is earlier than 0:1.0.9-78.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084007" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120084012" comment="seamonkey-devel is earlier than 0:1.0.9-78.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084013" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120084008" comment="seamonkey-js-debugger is earlier than 0:1.0.9-78.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120085" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0085: thunderbird security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0085-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0085.html" />
      <reference source="CVE" ref_id="CVE-2011-3670" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3670.html" />
      <reference source="CVE" ref_id="CVE-2012-0442" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0442.html" />
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

A flaw was found in the processing of malformed content. An HTML mail
message containing malicious content could cause Thunderbird to crash or,
potentially, execute arbitrary code with the privileges of the user running
Thunderbird. (CVE-2012-0442)

The same-origin policy in Thunderbird treated http://example.com and
http://[example.com] as interchangeable. A malicious script could possibly
use this flaw to gain access to sensitive information (such as a client's
IP and user e-mail address, or httpOnly cookies) that may be included in
HTTP proxy error replies, generated in response to invalid URLs using
square brackets. (CVE-2011-3670)

Note: The CVE-2011-3670 issue cannot be exploited by a specially-crafted
HTML mail message as JavaScript is disabled by default for mail messages.
It could be exploited another way in Thunderbird, for example, when viewing
the full remote content of an RSS feed.

All Thunderbird users should upgrade to this updated package, which
resolves these issues. All running instances of Thunderbird must be
restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-01" />
        <updated date="2012-02-01" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3670.html">CVE-2011-3670</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0442.html">CVE-2012-0442</cve>
        <bugzilla href="http://bugzilla.redhat.com/785085" id="785085">CVE-2012-0442 Mozilla: memory safety hazards in 10.0/1.9.2.26 (MFSA 2012-01)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/785464" id="785464">CVE-2011-3670 Mozilla: Same-origin bypass using IPv6-like hostname syntax (MFSA 2012-02)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_productivity</cpe>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120085002" comment="thunderbird is earlier than 0:1.5.0.12-46.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120085003" comment="thunderbird is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120085005" comment="thunderbird is earlier than 0:2.0.0.24-28.el5_7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120085006" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120086" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0086: openssl security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0086-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0086.html" />
      <reference source="CVE" ref_id="CVE-2011-4576" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4576.html" />
      <reference source="CVE" ref_id="CVE-2011-4619" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4619.html" />
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

An information leak flaw was found in the SSL 3.0 protocol implementation
in OpenSSL. Incorrect initialization of SSL record padding bytes could
cause an SSL client or server to send a limited amount of possibly
sensitive data to its SSL peer via the encrypted connection.
(CVE-2011-4576)

It was discovered that OpenSSL did not limit the number of TLS/SSL
handshake restarts required to support Server Gated Cryptography. A remote
attacker could use this flaw to make a TLS/SSL server using OpenSSL consume
an excessive amount of CPU by continuously restarting the handshake.
(CVE-2011-4619)

All OpenSSL users should upgrade to these updated packages, which contain
backported patches to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-01" />
        <updated date="2012-02-01" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4576.html">CVE-2011-4576</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4619.html">CVE-2011-4619</cve>
        <bugzilla href="http://bugzilla.redhat.com/771775" id="771775">CVE-2011-4576 openssl: uninitialized SSL 3.0 padding</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771780" id="771780">CVE-2011-4619 openssl: SGC restart DoS attack</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120086002" comment="openssl is earlier than 0:0.9.7a-43.18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120086003" comment="openssl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120086004" comment="openssl-perl is earlier than 0:0.9.7a-43.18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120086005" comment="openssl-perl is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120086006" comment="openssl-devel is earlier than 0:0.9.7a-43.18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120086007" comment="openssl-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120092" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0092: php53 security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0092-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0092.html" />
      <reference source="CVE" ref_id="CVE-2012-0830" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0830.html" />
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

It was discovered that the fix for CVE-2011-4885 (released via
RHSA-2012:0019 for php53 packages in Red Hat Enterprise Linux 5) introduced
an uninitialized memory use flaw. A remote attacker could send a specially-
crafted HTTP request to cause the PHP interpreter to crash or, possibly,
execute arbitrary code. (CVE-2012-0830)

All php53 users should upgrade to these updated packages, which contain a
backported patch to resolve this issue. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-02" />
        <updated date="2012-02-02" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0830.html">CVE-2012-0830</cve>
        <bugzilla href="http://bugzilla.redhat.com/786686" id="786686">CVE-2012-0830 php: remote code exec flaw introduced in the CVE-2011-4885 hashdos fix</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092038" comment="php53-intl is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019081" comment="php53-intl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092004" comment="php53-gd is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019065" comment="php53-gd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092024" comment="php53-imap is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019061" comment="php53-imap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092040" comment="php53-bcmath is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019091" comment="php53-bcmath is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092026" comment="php53-pgsql is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019087" comment="php53-pgsql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092016" comment="php53-mysql is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019085" comment="php53-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092006" comment="php53-cli is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019097" comment="php53-cli is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092036" comment="php53-xml is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019071" comment="php53-xml is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092022" comment="php53-odbc is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019093" comment="php53-odbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092018" comment="php53-process is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019089" comment="php53-process is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092002" comment="php53 is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019059" comment="php53 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092034" comment="php53-xmlrpc is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019073" comment="php53-xmlrpc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092020" comment="php53-dba is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019067" comment="php53-dba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092030" comment="php53-pspell is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019099" comment="php53-pspell is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092008" comment="php53-common is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019083" comment="php53-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092042" comment="php53-devel is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019077" comment="php53-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092032" comment="php53-soap is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019075" comment="php53-soap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092028" comment="php53-pdo is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019079" comment="php53-pdo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092014" comment="php53-ldap is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019063" comment="php53-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092010" comment="php53-snmp is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019095" comment="php53-snmp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120092012" comment="php53-mbstring is earlier than 0:5.3.3-1.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019069" comment="php53-mbstring is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120093" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0093: php security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
      <platform>Red Hat Enterprise Linux 4</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0093-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0093.html" />
      <reference source="CVE" ref_id="CVE-2012-0830" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0830.html" />
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

It was discovered that the fix for CVE-2011-4885 (released via
RHSA-2012:0071, RHSA-2012:0033, and RHSA-2012:0019 for php packages in Red
Hat Enterprise Linux 4, 5, and 6 respectively) introduced an uninitialized
memory use flaw. A remote attacker could send a specially-crafted HTTP
request to cause the PHP interpreter to crash or, possibly, execute
arbitrary code. (CVE-2012-0830)

All php users should upgrade to these updated packages, which contain a
backported patch to resolve this issue. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-02" />
        <updated date="2012-02-02" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0830.html">CVE-2012-0830</cve>
        <bugzilla href="http://bugzilla.redhat.com/786686" id="786686">CVE-2012-0830 php: remote code exec flaw introduced in the CVE-2011-4885 hashdos fix</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093047" comment="php-tidy is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019056" comment="php-tidy is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093043" comment="php-embedded is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019026" comment="php-embedded is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093029" comment="php-soap is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019034" comment="php-soap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093045" comment="php-xmlrpc is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019022" comment="php-xmlrpc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093053" comment="php-common is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019012" comment="php-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093039" comment="php-pspell is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019020" comment="php-pspell is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093013" comment="php-odbc is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019030" comment="php-odbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093005" comment="php is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019006" comment="php is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093033" comment="php-cli is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019050" comment="php-cli is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093023" comment="php-process is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019046" comment="php-process is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093009" comment="php-mysql is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019018" comment="php-mysql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093019" comment="php-mbstring is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019052" comment="php-mbstring is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093035" comment="php-pgsql is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019048" comment="php-pgsql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093021" comment="php-xml is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019014" comment="php-xml is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093015" comment="php-enchant is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019016" comment="php-enchant is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093007" comment="php-dba is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019024" comment="php-dba is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093055" comment="php-snmp is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019032" comment="php-snmp is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093051" comment="php-bcmath is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019040" comment="php-bcmath is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093027" comment="php-zts is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019054" comment="php-zts is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093041" comment="php-intl is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019028" comment="php-intl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093037" comment="php-gd is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019044" comment="php-gd is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093031" comment="php-devel is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019042" comment="php-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093049" comment="php-pdo is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019036" comment="php-pdo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093025" comment="php-recode is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019008" comment="php-recode is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093017" comment="php-ldap is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019038" comment="php-ldap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093011" comment="php-imap is earlier than 0:5.3.3-3.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019010" comment="php-imap is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093074" comment="php-xmlrpc is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071011" comment="php-xmlrpc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093066" comment="php-odbc is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071021" comment="php-odbc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093058" comment="php is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071003" comment="php is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093062" comment="php-mysql is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071017" comment="php-mysql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093072" comment="php-mbstring is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071027" comment="php-mbstring is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093078" comment="php-pgsql is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071025" comment="php-pgsql is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093070" comment="php-ncurses is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071005" comment="php-ncurses is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093080" comment="php-pear is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071029" comment="php-pear is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093076" comment="php-domxml is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071015" comment="php-domxml is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093060" comment="php-snmp is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071009" comment="php-snmp is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093084" comment="php-devel is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071023" comment="php-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093068" comment="php-gd is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071019" comment="php-gd is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093082" comment="php-imap is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071007" comment="php-imap is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093064" comment="php-ldap is earlier than 0:4.3.9-3.36" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120071013" comment="php-ldap is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093109" comment="php-soap is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033035" comment="php-soap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093107" comment="php-xmlrpc is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033023" comment="php-xmlrpc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093115" comment="php-common is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033013" comment="php-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093099" comment="php-odbc is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033009" comment="php-odbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093087" comment="php is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033003" comment="php is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093111" comment="php-cli is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033037" comment="php-cli is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093105" comment="php-mysql is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033017" comment="php-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093121" comment="php-mbstring is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033019" comment="php-mbstring is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093123" comment="php-pgsql is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033029" comment="php-pgsql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093101" comment="php-xml is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033007" comment="php-xml is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093097" comment="php-ncurses is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033015" comment="php-ncurses is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093091" comment="php-dba is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033025" comment="php-dba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093113" comment="php-bcmath is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033021" comment="php-bcmath is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093089" comment="php-snmp is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033033" comment="php-snmp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093119" comment="php-devel is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033005" comment="php-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093095" comment="php-gd is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033027" comment="php-gd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093117" comment="php-imap is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033031" comment="php-imap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093103" comment="php-ldap is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033039" comment="php-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120093093" comment="php-pdo is earlier than 0:5.1.6-27.el5_7.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033011" comment="php-pdo is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120095" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0095: ghostscript security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0095-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0095.html" />
      <reference source="CVE" ref_id="CVE-2009-3743" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-3743.html" />
      <reference source="CVE" ref_id="CVE-2010-2055" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2055.html" />
      <reference source="CVE" ref_id="CVE-2010-4054" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4054.html" />
      <reference source="CVE" ref_id="CVE-2010-4820" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4820.html" />
    <description>Ghostscript is a set of software that provides a PostScript interpreter, a
set of C procedures (the Ghostscript library, which implements the graphics
capabilities in the PostScript language) and an interpreter for Portable
Document Format (PDF) files.

An integer overflow flaw was found in Ghostscript's TrueType bytecode
interpreter. An attacker could create a specially-crafted PostScript or PDF
file that, when interpreted, could cause Ghostscript to crash or,
potentially, execute arbitrary code. (CVE-2009-3743)

It was found that Ghostscript always tried to read Ghostscript system
initialization files from the current working directory before checking
other directories, even if a search path that did not contain the current
working directory was specified with the "-I" option, or the "-P-" option
was used (to prevent the current working directory being searched first).
If a user ran Ghostscript in an attacker-controlled directory containing a
system initialization file, it could cause Ghostscript to execute arbitrary
PostScript code. (CVE-2010-2055)

Ghostscript included the current working directory in its library search
path by default. If a user ran Ghostscript without the "-P-" option in an
attacker-controlled directory containing a specially-crafted PostScript
library file, it could cause Ghostscript to execute arbitrary PostScript
code. With this update, Ghostscript no longer searches the current working
directory for library files by default. (CVE-2010-4820)

Note: The fix for CVE-2010-4820 could possibly break existing
configurations. To use the previous, vulnerable behavior, run Ghostscript
with the "-P" option (to always search the current working directory
first).

A flaw was found in the way Ghostscript interpreted PostScript Type 1 and
PostScript Type 2 font files. An attacker could create a specially-crafted
PostScript Type 1 or PostScript Type 2 font file that, when interpreted,
could cause Ghostscript to crash or, potentially, execute arbitrary code.
(CVE-2010-4054)

Users of Ghostscript are advised to upgrade to these updated packages,
which contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-02" />
        <updated date="2012-02-02" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2009-3743.html">CVE-2009-3743</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2055.html">CVE-2010-2055</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4054.html">CVE-2010-4054</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4820.html">CVE-2010-4820</cve>
        <bugzilla href="http://bugzilla.redhat.com/599564" id="599564">CVE-2010-2055 ghostscript: gs_init.ps searched in current directory despite -P-</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/627902" id="627902">CVE-2009-3743 ghostscript: TrueType bytecode intepreter integer overflow or wraparound</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/646086" id="646086">CVE-2010-4054 ghostscript: glyph data access improper input validation</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771853" id="771853">CVE-2010-4820 ghostscript: CWD included in the default library search path</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120095007" comment="ghostscript-gtk is earlier than 0:8.70-11.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120095008" comment="ghostscript-gtk is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120095005" comment="ghostscript is earlier than 0:8.70-11.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120095006" comment="ghostscript is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120095011" comment="ghostscript-doc is earlier than 0:8.70-11.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120095012" comment="ghostscript-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120095009" comment="ghostscript-devel is earlier than 0:8.70-11.el6_2.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120095010" comment="ghostscript-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120095016" comment="ghostscript-gtk is earlier than 0:8.70-6.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120095017" comment="ghostscript-gtk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120095014" comment="ghostscript is earlier than 0:8.70-6.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120095015" comment="ghostscript is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120095018" comment="ghostscript-devel is earlier than 0:8.70-6.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120095019" comment="ghostscript-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120096" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0096: ghostscript security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0096-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0096.html" />
      <reference source="CVE" ref_id="CVE-2010-4054" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4054.html" />
      <reference source="CVE" ref_id="CVE-2010-4820" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4820.html" />
    <description>Ghostscript is a set of software that provides a PostScript interpreter, a
set of C procedures (the Ghostscript library, which implements the graphics
capabilities in the PostScript language) and an interpreter for Portable
Document Format (PDF) files.

Ghostscript included the current working directory in its library search
path by default. If a user ran Ghostscript without the "-P-" option in an
attacker-controlled directory containing a specially-crafted PostScript
library file, it could cause Ghostscript to execute arbitrary PostScript
code. With this update, Ghostscript no longer searches the current working
directory for library files by default. (CVE-2010-4820)

Note: The fix for CVE-2010-4820 could possibly break existing
configurations. To use the previous, vulnerable behavior, run Ghostscript
with the "-P" option (to always search the current working directory
first).

A flaw was found in the way Ghostscript interpreted PostScript Type 1 and
PostScript Type 2 font files. An attacker could create a specially-crafted
PostScript Type 1 or PostScript Type 2 font file that, when interpreted,
could cause Ghostscript to crash or, potentially, execute arbitrary code.
(CVE-2010-4054)

Users of Ghostscript are advised to upgrade to these updated packages,
which contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-02" />
        <updated date="2012-02-02" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4054.html">CVE-2010-4054</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4820.html">CVE-2010-4820</cve>
        <bugzilla href="http://bugzilla.redhat.com/646086" id="646086">CVE-2010-4054 ghostscript: glyph data access improper input validation</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771853" id="771853">CVE-2010-4820 ghostscript: CWD included in the default library search path</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120096004" comment="ghostscript-gtk is earlier than 0:7.07-33.13.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120096005" comment="ghostscript-gtk is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120096002" comment="ghostscript is earlier than 0:7.07-33.13.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120096003" comment="ghostscript is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120096006" comment="ghostscript-devel is earlier than 0:7.07-33.13.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120096007" comment="ghostscript-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120103" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0103: squirrelmail security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0103-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0103.html" />
      <reference source="CVE" ref_id="CVE-2010-1637" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-1637.html" />
      <reference source="CVE" ref_id="CVE-2010-2813" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2813.html" />
      <reference source="CVE" ref_id="CVE-2010-4554" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4554.html" />
      <reference source="CVE" ref_id="CVE-2010-4555" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4555.html" />
      <reference source="CVE" ref_id="CVE-2011-2023" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2023.html" />
      <reference source="CVE" ref_id="CVE-2011-2752" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2752.html" />
      <reference source="CVE" ref_id="CVE-2011-2753" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2753.html" />
    <description>SquirrelMail is a standards-based webmail package written in PHP.

A cross-site scripting (XSS) flaw was found in the way SquirrelMail
performed the sanitization of HTML style tag content. A remote attacker
could use this flaw to send a specially-crafted Multipurpose Internet Mail
Extensions (MIME) message that, when opened by a victim, would lead to
arbitrary web script execution in the context of their SquirrelMail
session. (CVE-2011-2023)

Multiple cross-site scripting (XSS) flaws were found in SquirrelMail. A
remote attacker could possibly use these flaws to execute arbitrary web
script in the context of a victim's SquirrelMail session. (CVE-2010-4555)

An input sanitization flaw was found in the way SquirrelMail handled the
content of various HTML input fields. A remote attacker could use this
flaw to alter user preference values via a newline character contained in
the input for these fields. (CVE-2011-2752)

It was found that the SquirrelMail Empty Trash and Index Order pages did
not protect against Cross-Site Request Forgery (CSRF) attacks. If a remote
attacker could trick a user, who was logged into SquirrelMail, into
visiting a specially-crafted URL, the attacker could empty the victim's
trash folder or alter the ordering of the columns on the message index
page. (CVE-2011-2753)

SquirrelMail was allowed to be loaded into an HTML sub-frame, allowing a
remote attacker to perform a clickjacking attack against logged in users
and possibly gain access to sensitive user data. With this update, the
SquirrelMail main frame can only be loaded into the top most browser frame.
(CVE-2010-4554)

A flaw was found in the way SquirrelMail handled failed log in attempts. A
user preference file was created when attempting to log in with a password
containing an 8-bit character, even if the username was not valid. A
remote attacker could use this flaw to eventually consume all hard disk
space on the target SquirrelMail server. (CVE-2010-2813)

A flaw was found in the SquirrelMail Mail Fetch plug-in. If an
administrator enabled this plug-in, a SquirrelMail user could use this flaw
to port scan the local network the server was on. (CVE-2010-1637)

Users of SquirrelMail should upgrade to this updated package, which
contains backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-08" />
        <updated date="2012-02-08" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-1637.html">CVE-2010-1637</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2813.html">CVE-2010-2813</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4554.html">CVE-2010-4554</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4555.html">CVE-2010-4555</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2023.html">CVE-2011-2023</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2752.html">CVE-2011-2752</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2753.html">CVE-2011-2753</cve>
        <bugzilla href="http://bugzilla.redhat.com/606459" id="606459">CVE-2010-1637 SquirrelMail: Mail Fetch plugin -- port-scans via non-standard POP3 server ports</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/618096" id="618096">CVE-2010-2813 SquirrelMail: DoS (disk space consumption) by random IMAP login attempts with 8-bit characters in the password</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/720693" id="720693">CVE-2010-4554 SquirrelMail: Prone to clickjacking attacks</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/720694" id="720694">CVE-2010-4555 SquirrelMail: Multiple XSS flaws</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/720695" id="720695">CVE-2011-2023 SquirrelMail: XSS in &lt;style> tag handling</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/722831" id="722831">CVE-2011-2752 SquirrelMail: CRLF injection vulnerability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/722832" id="722832">CVE-2011-2753 SquirrelMail: CSRF in the empty trash feature and in Index Order page</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120103002" comment="squirrelmail is earlier than 0:1.4.8-18.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120103003" comment="squirrelmail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120103005" comment="squirrelmail is earlier than 0:1.4.8-5.el5_7.13" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120103006" comment="squirrelmail is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120105" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0105: mysql security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0105-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0105.html" />
      <reference source="CVE" ref_id="CVE-2011-2262" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2262.html" />
      <reference source="CVE" ref_id="CVE-2012-0075" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0075.html" />
      <reference source="CVE" ref_id="CVE-2012-0087" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0087.html" />
      <reference source="CVE" ref_id="CVE-2012-0101" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0101.html" />
      <reference source="CVE" ref_id="CVE-2012-0102" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0102.html" />
      <reference source="CVE" ref_id="CVE-2012-0112" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0112.html" />
      <reference source="CVE" ref_id="CVE-2012-0113" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0113.html" />
      <reference source="CVE" ref_id="CVE-2012-0114" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0114.html" />
      <reference source="CVE" ref_id="CVE-2012-0115" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0115.html" />
      <reference source="CVE" ref_id="CVE-2012-0116" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0116.html" />
      <reference source="CVE" ref_id="CVE-2012-0118" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0118.html" />
      <reference source="CVE" ref_id="CVE-2012-0119" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0119.html" />
      <reference source="CVE" ref_id="CVE-2012-0120" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0120.html" />
      <reference source="CVE" ref_id="CVE-2012-0484" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0484.html" />
      <reference source="CVE" ref_id="CVE-2012-0485" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0485.html" />
      <reference source="CVE" ref_id="CVE-2012-0490" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0490.html" />
      <reference source="CVE" ref_id="CVE-2012-0492" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0492.html" />
    <description>MySQL is a multi-user, multi-threaded SQL database server. It consists of
the MySQL server daemon (mysqld) and many client programs and libraries.

This update fixes several vulnerabilities in the MySQL database server.
Information about these flaws can be found on the Oracle Critical Patch
Update Advisory page, listed in the References section. (CVE-2011-2262,
CVE-2012-0075, CVE-2012-0087, CVE-2012-0101, CVE-2012-0102, CVE-2012-0112,
CVE-2012-0113, CVE-2012-0114, CVE-2012-0115, CVE-2012-0116, CVE-2012-0118,
CVE-2012-0119, CVE-2012-0120, CVE-2012-0484, CVE-2012-0485, CVE-2012-0490,
CVE-2012-0492)

These updated packages upgrade MySQL to version 5.1.61. Refer to the MySQL
release notes for a full list of changes:

http://dev.mysql.com/doc/refman/5.1/en/news-5-1-x.html

All MySQL users should upgrade to these updated packages, which correct
these issues. After installing this update, the MySQL server daemon
(mysqld) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-08" />
        <updated date="2012-02-08" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2262.html">CVE-2011-2262</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0075.html">CVE-2012-0075</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0087.html">CVE-2012-0087</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0101.html">CVE-2012-0101</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0102.html">CVE-2012-0102</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0112.html">CVE-2012-0112</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0113.html">CVE-2012-0113</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0114.html">CVE-2012-0114</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0115.html">CVE-2012-0115</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0116.html">CVE-2012-0116</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0118.html">CVE-2012-0118</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0119.html">CVE-2012-0119</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0120.html">CVE-2012-0120</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0484.html">CVE-2012-0484</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0485.html">CVE-2012-0485</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0490.html">CVE-2012-0490</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0492.html">CVE-2012-0492</cve>
        <bugzilla href="http://bugzilla.redhat.com/783793" id="783793">CVE-2011-2262 mysql: Unspecified vulnerability allows remote attackers to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783794" id="783794">CVE-2012-0075 mysql: Unspecified vulnerability allows remote authenticated users to affect integrity</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783795" id="783795">CVE-2012-0087 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783797" id="783797">CVE-2012-0101 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783798" id="783798">CVE-2012-0102 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783799" id="783799">CVE-2012-0112 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783800" id="783800">CVE-2012-0113 mysql: Unspecified vulnerability allows remote authenticated users to affect confidentiality and availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783801" id="783801">CVE-2012-0114 mysql: Unspecified vulnerability allows local users to affect confidentiality and integrity</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783802" id="783802">CVE-2012-0115 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783803" id="783803">CVE-2012-0116 mysql: Unspecified vulnerability allows remote authenticated users to affect confidentiality and integrity</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783805" id="783805">CVE-2012-0118 mysql: Unspecified vulnerability allows remote authenticated users to affect confidentiality and availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783806" id="783806">CVE-2012-0119 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783807" id="783807">CVE-2012-0120 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783808" id="783808">CVE-2012-0484 mysql: Unspecified vulnerability allows remote authenticated users to affect confidentiality</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783809" id="783809">CVE-2012-0485 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783815" id="783815">CVE-2012-0490 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783817" id="783817">CVE-2012-0492 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120105011" comment="mysql-embedded is earlier than 0:5.1.61-1.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120105012" comment="mysql-embedded is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120105005" comment="mysql is earlier than 0:5.1.61-1.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120105006" comment="mysql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120105017" comment="mysql-libs is earlier than 0:5.1.61-1.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120105018" comment="mysql-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120105015" comment="mysql-server is earlier than 0:5.1.61-1.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120105016" comment="mysql-server is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120105007" comment="mysql-embedded-devel is earlier than 0:5.1.61-1.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120105008" comment="mysql-embedded-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120105013" comment="mysql-bench is earlier than 0:5.1.61-1.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120105014" comment="mysql-bench is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120105009" comment="mysql-devel is earlier than 0:5.1.61-1.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120105010" comment="mysql-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120105019" comment="mysql-test is earlier than 0:5.1.61-1.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120105020" comment="mysql-test is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120107" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0107: kernel security and bug fix update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0107-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0107.html" />
      <reference source="CVE" ref_id="CVE-2011-3638" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3638.html" />
      <reference source="CVE" ref_id="CVE-2011-4086" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4086.html" />
      <reference source="CVE" ref_id="CVE-2011-4127" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4127.html" />
      <reference source="CVE" ref_id="CVE-2012-0028" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0028.html" />
      <reference source="CVE" ref_id="CVE-2012-0207" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0207.html" />
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* Using the SG_IO ioctl to issue SCSI requests to partitions or LVM volumes
resulted in the requests being passed to the underlying block device. If a
privileged user only had access to a single partition or LVM volume, they
could use this flaw to bypass those restrictions and gain read and write
access (and be able to issue other SCSI commands) to the entire block
device. Refer to Red Hat Knowledgebase article DOC-67874, linked to in the
References, for further details about this issue. (CVE-2011-4127,
Important)

* A flaw was found in the way the Linux kernel handled robust list pointers
of user-space held futexes across exec() calls. A local, unprivileged user
could use this flaw to cause a denial of service or, eventually, escalate
their privileges. (CVE-2012-0028, Important)

* A flaw was found in the Linux kernel in the way splitting two extents in
ext4_ext_convert_to_initialized() worked. A local, unprivileged user with
the ability to mount and unmount ext4 file systems could use this flaw to
cause a denial of service. (CVE-2011-3638, Moderate)

* A flaw was found in the way the Linux kernel's journal_unmap_buffer()
function handled buffer head states. On systems that have an ext4 file
system with a journal mounted, a local, unprivileged user could use this
flaw to cause a denial of service. (CVE-2011-4086, Moderate)

* A divide-by-zero flaw was found in the Linux kernel's igmp_heard_query()
function. An attacker able to send certain IGMP (Internet Group Management
Protocol) packets to a target system could use this flaw to cause a denial
of service. (CVE-2012-0207, Moderate)

Red Hat would like to thank Zheng Liu for reporting CVE-2011-3638, and
Simon McVittie for reporting CVE-2012-0207.

This update also fixes the following bugs:

* When a host was in recovery mode and a SCSI scan operation was initiated,
the scan operation failed and provided no error output. This bug has been
fixed and the SCSI layer now waits for recovery of the host to complete
scan operations for devices. (BZ#772162)

* SG_IO ioctls were not implemented correctly in the Red Hat Enterprise
Linux 5 virtio-blk driver. Sending an SG_IO ioctl request to a virtio-blk
disk caused the sending thread to enter an uninterruptible sleep state ("D"
state). With this update, SG_IO ioctls are rejected by the virtio-blk
driver: the ioctl system call will simply return an ENOTTY ("Inappropriate
ioctl for device") error and the thread will continue normally. (BZ#773322)

Users should upgrade to these updated packages, which contain backported
patches to correct these issues. The system must be rebooted for this
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-09" />
        <updated date="2012-02-09" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3638.html">CVE-2011-3638</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4086.html">CVE-2011-4086</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4127.html">CVE-2011-4127</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0028.html">CVE-2012-0028</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0207.html">CVE-2012-0207</cve>
        <bugzilla href="http://bugzilla.redhat.com/747942" id="747942">CVE-2011-3638 kernel: ext4: ext4_ext_insert_extent() kernel oops</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/749143" id="749143">CVE-2011-4086 kernel: jbd2: unmapped buffer with _Unwritten or _Delay flags set can lead to DoS</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/752375" id="752375">CVE-2011-4127 kernel: possible privilege escalation via SG_IO ioctl</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771764" id="771764">CVE-2012-0028 kernel: futex: clear robust_list on execve</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/772867" id="772867">CVE-2012-0207 kernel: igmp: Avoid zero delay when receiving odd mixture of IGMP queries</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107004" comment="kernel-headers is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107002" comment="kernel is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107024" comment="kernel-doc is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107008" comment="kernel-devel is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107016" comment="kernel-kdump is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007019" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107006" comment="kernel-xen-devel is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007011" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107012" comment="kernel-debug is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107010" comment="kernel-debug-devel is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007009" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107022" comment="kernel-PAE is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107020" comment="kernel-PAE-devel is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107018" comment="kernel-kdump-devel is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007017" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120107014" comment="kernel-xen is earlier than 0:2.6.18-274.18.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007015" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120125" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0125: glibc security and bug fix update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0125-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0125.html" />
      <reference source="CVE" ref_id="CVE-2009-5029" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-5029.html" />
      <reference source="CVE" ref_id="CVE-2009-5064" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-5064.html" />
      <reference source="CVE" ref_id="CVE-2010-0296" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0296.html" />
      <reference source="CVE" ref_id="CVE-2010-0830" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0830.html" />
      <reference source="CVE" ref_id="CVE-2011-1071" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1071.html" />
      <reference source="CVE" ref_id="CVE-2011-1089" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1089.html" />
      <reference source="CVE" ref_id="CVE-2011-1095" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1095.html" />
      <reference source="CVE" ref_id="CVE-2011-1659" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1659.html" />
      <reference source="CVE" ref_id="CVE-2011-4609" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4609.html" />
    <description>The glibc packages contain the standard C libraries used by multiple
programs on the system. These packages contain the standard C and the
standard math libraries. Without these two libraries, a Linux system cannot
function properly.

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way the glibc library read timezone files. If a
carefully-crafted timezone file was loaded by an application linked against
glibc, it could cause the application to crash or, potentially, execute
arbitrary code with the privileges of the user running the application.
(CVE-2009-5029)

A flaw was found in the way the ldd utility identified dynamically linked
libraries. If an attacker could trick a user into running ldd on a
malicious binary, it could result in arbitrary code execution with the
privileges of the user running ldd. (CVE-2009-5064)

It was discovered that the glibc addmntent() function, used by various
mount helper utilities, did not sanitize its input properly. A local
attacker could possibly use this flaw to inject malformed lines into the
mtab (mounted file systems table) file via certain setuid mount helpers, if
the attacker were allowed to mount to an arbitrary directory under their
control. (CVE-2010-0296)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way the glibc library loaded ELF (Executable and Linking
Format) files. If a carefully-crafted ELF file was loaded by an
application linked against glibc, it could cause the application to crash
or, potentially, execute arbitrary code with the privileges of the user
running the application. (CVE-2010-0830)

It was discovered that the glibc fnmatch() function did not properly
restrict the use of alloca(). If the function was called on sufficiently
large inputs, it could cause an application using fnmatch() to crash or,
possibly, execute arbitrary code with the privileges of the application.
(CVE-2011-1071)

It was found that the glibc addmntent() function, used by various mount
helper utilities, did not handle certain errors correctly when updating the
mtab (mounted file systems table) file. If such utilities had the setuid
bit set, a local attacker could use this flaw to corrupt the mtab file.
(CVE-2011-1089)

It was discovered that the locale command did not produce properly escaped
output as required by the POSIX specification. If an attacker were able to
set the locale environment variables in the environment of a script that
performed shell evaluation on the output of the locale command, and that
script were run with different privileges than the attacker's, it could
execute arbitrary code with the privileges of the script. (CVE-2011-1095)

An integer overflow flaw was found in the glibc fnmatch() function. If an
attacker supplied a long UTF-8 string to an application linked against
glibc, it could cause the application to crash. (CVE-2011-1659)

A denial of service flaw was found in the remote procedure call (RPC)
implementation in glibc. A remote attacker able to open a large number of
connections to an RPC service that is using the RPC implementation from
glibc, could use this flaw to make that service use an excessive amount of
CPU time. (CVE-2011-4609)

Red Hat would like to thank the Ubuntu Security Team for reporting
CVE-2010-0830, and Dan Rosenberg for reporting CVE-2011-1089. The Ubuntu
Security Team acknowledges Dan Rosenberg as the original reporter of
CVE-2010-0830.

This update also fixes the following bug:

* When using an nscd package that is a different version than the glibc
package, the nscd service could fail to start. This update makes the nscd
package require a specific glibc version to prevent this problem.
(BZ#657009)

Users should upgrade to these updated packages, which resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-13" />
        <updated date="2012-02-13" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2009-5029.html">CVE-2009-5029</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2009-5064.html">CVE-2009-5064</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0296.html">CVE-2010-0296</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0830.html">CVE-2010-0830</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1071.html">CVE-2011-1071</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1089.html">CVE-2011-1089</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1095.html">CVE-2011-1095</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1659.html">CVE-2011-1659</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4609.html">CVE-2011-4609</cve>
        <bugzilla href="http://bugzilla.redhat.com/559579" id="559579">CVE-2010-0296 glibc: Improper encoding of names with certain special character in utilities for writing to mtab table</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/599056" id="599056">CVE-2010-0830 glibc: ld.so d_tag signedness error in elf_get_dynamic_info</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/625893" id="625893">CVE-2011-1095 glibc: insufficient quoting in the locale command output</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/657009" id="657009">nscd rpm installation doesn't check dependencies</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/681054" id="681054">CVE-2011-1071 CVE-2011-1659 glibc: fnmatch() alloca()-based memory corruption flaw</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/688980" id="688980">CVE-2011-1089 glibc: Suid mount helpers fail to anticipate RLIMIT_FSIZE</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692393" id="692393">CVE-2009-5064 glibc: ldd unexpected code execution issue</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/761245" id="761245">CVE-2009-5029 glibc: __tzfile_read integer overflow to buffer overflow</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/767299" id="767299">CVE-2011-4609 glibc: svc_run() produces high cpu usage when accept() fails with EMFILE error</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120125004" comment="nscd is earlier than 0:2.3.4-2.57" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120125005" comment="nscd is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120125008" comment="glibc-utils is earlier than 0:2.3.4-2.57" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120125009" comment="glibc-utils is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120125014" comment="glibc-devel is earlier than 0:2.3.4-2.57" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120125015" comment="glibc-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120125012" comment="glibc-profile is earlier than 0:2.3.4-2.57" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120125013" comment="glibc-profile is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120125006" comment="glibc-common is earlier than 0:2.3.4-2.57" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120125007" comment="glibc-common is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120125002" comment="glibc is earlier than 0:2.3.4-2.57" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120125003" comment="glibc is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120125016" comment="glibc-headers is earlier than 0:2.3.4-2.57" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120125017" comment="glibc-headers is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120125010" comment="nptl-devel is earlier than 0:2.3.4-2.57" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120125011" comment="nptl-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120126" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0126: glibc security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0126-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0126.html" />
      <reference source="CVE" ref_id="CVE-2009-5029" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-5029.html" />
      <reference source="CVE" ref_id="CVE-2009-5064" ref_url="https://www.redhat.com/security/data/cve/CVE-2009-5064.html" />
      <reference source="CVE" ref_id="CVE-2010-0830" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0830.html" />
      <reference source="CVE" ref_id="CVE-2011-1089" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1089.html" />
      <reference source="CVE" ref_id="CVE-2011-4609" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4609.html" />
    <description>The glibc packages contain the standard C libraries used by multiple
programs on the system. These packages contain the standard C and the
standard math libraries. Without these two libraries, a Linux system cannot
function properly.

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way the glibc library read timezone files. If a
carefully-crafted timezone file was loaded by an application linked against
glibc, it could cause the application to crash or, potentially, execute
arbitrary code with the privileges of the user running the application.
(CVE-2009-5029)

A flaw was found in the way the ldd utility identified dynamically linked
libraries. If an attacker could trick a user into running ldd on a
malicious binary, it could result in arbitrary code execution with the
privileges of the user running ldd. (CVE-2009-5064)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way the glibc library loaded ELF (Executable and Linking
Format) files. If a carefully-crafted ELF file was loaded by an
application linked against glibc, it could cause the application to crash
or, potentially, execute arbitrary code with the privileges of the user
running the application. (CVE-2010-0830)

It was found that the glibc addmntent() function, used by various mount
helper utilities, did not handle certain errors correctly when updating the
mtab (mounted file systems table) file. If such utilities had the setuid
bit set, a local attacker could use this flaw to corrupt the mtab file.
(CVE-2011-1089)

A denial of service flaw was found in the remote procedure call (RPC)
implementation in glibc. A remote attacker able to open a large number of
connections to an RPC service that is using the RPC implementation from
glibc, could use this flaw to make that service use an excessive amount of
CPU time. (CVE-2011-4609)

Red Hat would like to thank the Ubuntu Security Team for reporting
CVE-2010-0830, and Dan Rosenberg for reporting CVE-2011-1089. The Ubuntu
Security Team acknowledges Dan Rosenberg as the original reporter of
CVE-2010-0830.

Users should upgrade to these updated packages, which resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-13" />
        <updated date="2012-02-13" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2009-5029.html">CVE-2009-5029</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2009-5064.html">CVE-2009-5064</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0830.html">CVE-2010-0830</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1089.html">CVE-2011-1089</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4609.html">CVE-2011-4609</cve>
        <bugzilla href="http://bugzilla.redhat.com/599056" id="599056">CVE-2010-0830 glibc: ld.so d_tag signedness error in elf_get_dynamic_info</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/688980" id="688980">CVE-2011-1089 glibc: Suid mount helpers fail to anticipate RLIMIT_FSIZE</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692393" id="692393">CVE-2009-5064 glibc: ldd unexpected code execution issue</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/761245" id="761245">CVE-2009-5029 glibc: __tzfile_read integer overflow to buffer overflow</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/767299" id="767299">CVE-2011-4609 glibc: svc_run() produces high cpu usage when accept() fails with EMFILE error</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120126006" comment="nscd is earlier than 0:2.5-65.el5_7.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126007" comment="nscd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120126010" comment="glibc-utils is earlier than 0:2.5-65.el5_7.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126011" comment="glibc-utils is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120126004" comment="glibc-devel is earlier than 0:2.5-65.el5_7.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126005" comment="glibc-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120126012" comment="glibc-common is earlier than 0:2.5-65.el5_7.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126013" comment="glibc-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120126002" comment="glibc is earlier than 0:2.5-65.el5_7.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126003" comment="glibc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120126008" comment="glibc-headers is earlier than 0:2.5-65.el5_7.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126009" comment="glibc-headers is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120127" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0127: mysql security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0127-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0127.html" />
      <reference source="CVE" ref_id="CVE-2012-0075" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0075.html" />
      <reference source="CVE" ref_id="CVE-2012-0087" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0087.html" />
      <reference source="CVE" ref_id="CVE-2012-0101" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0101.html" />
      <reference source="CVE" ref_id="CVE-2012-0102" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0102.html" />
      <reference source="CVE" ref_id="CVE-2012-0114" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0114.html" />
      <reference source="CVE" ref_id="CVE-2012-0484" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0484.html" />
      <reference source="CVE" ref_id="CVE-2012-0490" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0490.html" />
    <description>MySQL is a multi-user, multi-threaded SQL database server. It consists of
the MySQL server daemon (mysqld) and many client programs and libraries.

This update fixes several vulnerabilities in the MySQL database server.
Information about these flaws can be found on the Oracle Critical Patch
Update Advisory page, listed in the References section. (CVE-2012-0075,
CVE-2012-0087, CVE-2012-0101, CVE-2012-0102, CVE-2012-0114, CVE-2012-0484,
CVE-2012-0490)

These updated packages upgrade MySQL to version 5.0.95. Refer to the MySQL
release notes for a full list of changes:

http://dev.mysql.com/doc/refman/5.0/en/news-5-0-x.html

All MySQL users should upgrade to these updated packages, which correct
these issues. After installing this update, the MySQL server daemon
(mysqld) will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-13" />
        <updated date="2012-02-13" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0075.html">CVE-2012-0075</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0087.html">CVE-2012-0087</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0101.html">CVE-2012-0101</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0102.html">CVE-2012-0102</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0114.html">CVE-2012-0114</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0484.html">CVE-2012-0484</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0490.html">CVE-2012-0490</cve>
        <bugzilla href="http://bugzilla.redhat.com/783794" id="783794">CVE-2012-0075 mysql: Unspecified vulnerability allows remote authenticated users to affect integrity</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783795" id="783795">CVE-2012-0087 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783797" id="783797">CVE-2012-0101 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783798" id="783798">CVE-2012-0102 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783801" id="783801">CVE-2012-0114 mysql: Unspecified vulnerability allows local users to affect confidentiality and integrity</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783808" id="783808">CVE-2012-0484 mysql: Unspecified vulnerability allows remote authenticated users to affect confidentiality</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783815" id="783815">CVE-2012-0490 mysql: Unspecified vulnerability allows remote authenticated users to affect availability</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120127002" comment="mysql is earlier than 0:5.0.95-1.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120127003" comment="mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120127004" comment="mysql-devel is earlier than 0:5.0.95-1.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120127005" comment="mysql-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120127008" comment="mysql-bench is earlier than 0:5.0.95-1.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120127009" comment="mysql-bench is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120127010" comment="mysql-test is earlier than 0:5.0.95-1.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120127011" comment="mysql-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120127006" comment="mysql-server is earlier than 0:5.0.95-1.el5_7.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120127007" comment="mysql-server is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120128" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0128: httpd security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0128-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0128.html" />
      <reference source="CVE" ref_id="CVE-2011-3607" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3607.html" />
      <reference source="CVE" ref_id="CVE-2011-3639" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3639.html" />
      <reference source="CVE" ref_id="CVE-2011-4317" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4317.html" />
      <reference source="CVE" ref_id="CVE-2012-0031" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0031.html" />
      <reference source="CVE" ref_id="CVE-2012-0053" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0053.html" />
    <description>The Apache HTTP Server is a popular web server.

It was discovered that the fix for CVE-2011-3368 (released via
RHSA-2011:1391) did not completely address the problem. An attacker could
bypass the fix and make a reverse proxy connect to an arbitrary server not
directly accessible to the attacker by sending an HTTP version 0.9 request,
or by using a specially-crafted URI. (CVE-2011-3639, CVE-2011-4317)

The httpd server included the full HTTP header line in the default error
page generated when receiving an excessively long or malformed header.
Malicious JavaScript running in the server's domain context could use this
flaw to gain access to httpOnly cookies. (CVE-2012-0053)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way httpd performed substitutions in regular expressions. An
attacker able to set certain httpd settings, such as a user permitted to
override the httpd configuration for a specific directory using a
".htaccess" file, could use this flaw to crash the httpd child process or,
possibly, execute arbitrary code with the privileges of the "apache" user.
(CVE-2011-3607)

A flaw was found in the way httpd handled child process status information.
A malicious program running with httpd child process privileges (such as a
PHP or CGI script) could use this flaw to cause the parent httpd process to
crash during httpd service shutdown. (CVE-2012-0031)

All httpd users should upgrade to these updated packages, which contain
backported patches to correct these issues. After installing the updated
packages, the httpd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-13" />
        <updated date="2012-02-13" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3607.html">CVE-2011-3607</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3639.html">CVE-2011-3639</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4317.html">CVE-2011-4317</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0031.html">CVE-2012-0031</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0053.html">CVE-2012-0053</cve>
        <bugzilla href="http://bugzilla.redhat.com/752080" id="752080">CVE-2011-3639 httpd: http 0.9 request bypass of the reverse proxy vulnerability CVE-2011-3368 fix</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/756483" id="756483">CVE-2011-4317 httpd: uri scheme bypass of the reverse proxy vulnerability CVE-2011-3368 fix</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/769844" id="769844">CVE-2011-3607 httpd: ap_pregsub Integer overflow to buffer overflow</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/773744" id="773744">CVE-2012-0031 httpd: possible crash on shutdown due to flaw in scoreboard handling</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/785069" id="785069">CVE-2012-0053 httpd: cookie exposure due to error responses</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120128013" comment="httpd-manual is earlier than 0:2.2.15-15.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120128014" comment="httpd-manual is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120128009" comment="httpd-tools is earlier than 0:2.2.15-15.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120128010" comment="httpd-tools is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120128007" comment="httpd-devel is earlier than 0:2.2.15-15.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120128008" comment="httpd-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120128005" comment="httpd is earlier than 0:2.2.15-15.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120128006" comment="httpd is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120128011" comment="mod_ssl is earlier than 0:2.2.15-15.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120128012" comment="mod_ssl is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120135" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0135: java-1.6.0-openjdk security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0135-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0135.html" />
      <reference source="CVE" ref_id="CVE-2011-3563" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3563.html" />
      <reference source="CVE" ref_id="CVE-2011-3571" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3571.html" />
      <reference source="CVE" ref_id="CVE-2011-5035" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-5035.html" />
      <reference source="CVE" ref_id="CVE-2012-0497" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0497.html" />
      <reference source="CVE" ref_id="CVE-2012-0501" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0501.html" />
      <reference source="CVE" ref_id="CVE-2012-0502" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0502.html" />
      <reference source="CVE" ref_id="CVE-2012-0503" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0503.html" />
      <reference source="CVE" ref_id="CVE-2012-0505" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0505.html" />
      <reference source="CVE" ref_id="CVE-2012-0506" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0506.html" />
      <reference source="CVE" ref_id="CVE-2012-0507" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0507.html" />
    <description>These packages provide the OpenJDK 6 Java Runtime Environment and the
OpenJDK 6 Software Development Kit.

It was discovered that Java2D did not properly check graphics rendering
objects before passing them to the native renderer. Malicious input, or an
untrusted Java application or applet could use this flaw to crash the Java
Virtual Machine (JVM), or bypass Java sandbox restrictions. (CVE-2012-0497)

It was discovered that the exception thrown on deserialization failure did
not always contain a proper identification of the cause of the failure. An
untrusted Java application or applet could use this flaw to bypass Java
sandbox restrictions. (CVE-2012-0505)

The AtomicReferenceArray class implementation did not properly check if
the array was of the expected Object[] type. A malicious Java application
or applet could use this flaw to bypass Java sandbox restrictions.
(CVE-2011-3571)

It was discovered that the use of TimeZone.setDefault() was not restricted
by the SecurityManager, allowing an untrusted Java application or applet to
set a new default time zone, and hence bypass Java sandbox restrictions.
(CVE-2012-0503)

The HttpServer class did not limit the number of headers read from HTTP
requests. A remote attacker could use this flaw to make an application
using HttpServer use an excessive amount of CPU time via a
specially-crafted request. This update introduces a header count limit
controlled using the sun.net.httpserver.maxReqHeaders property. The default
value is 200. (CVE-2011-5035)

The Java Sound component did not properly check buffer boundaries.
Malicious input, or an untrusted Java application or applet could use this
flaw to cause the Java Virtual Machine (JVM) to crash or disclose a portion
of its memory. (CVE-2011-3563)

A flaw was found in the AWT KeyboardFocusManager that could allow an
untrusted Java application or applet to acquire keyboard focus and possibly
steal sensitive information. (CVE-2012-0502)

It was discovered that the CORBA (Common Object Request Broker
Architecture) implementation in Java did not properly protect repository
identifiers on certain CORBA objects. This could have been used to modify
immutable object data. (CVE-2012-0506)

An off-by-one flaw, causing a stack overflow, was found in the unpacker for
ZIP files. A specially-crafted ZIP archive could cause the Java Virtual
Machine (JVM) to crash when opened. (CVE-2012-0501)

Note: If the web browser plug-in provided by the icedtea-web package was
installed, the issues exposed via Java applets could have been exploited
without user interaction if a user visited a malicious website.

This erratum also upgrades the OpenJDK package to IcedTea6 1.10.6. Refer to
the NEWS file, linked to in the References, for further information.

All users of java-1.6.0-openjdk are advised to upgrade to these updated
packages, which resolve these issues. All running instances of OpenJDK Java
must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-14" />
        <updated date="2012-02-14" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3563.html">CVE-2011-3563</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3571.html">CVE-2011-3571</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-5035.html">CVE-2011-5035</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0497.html">CVE-2012-0497</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0501.html">CVE-2012-0501</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0502.html">CVE-2012-0502</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0503.html">CVE-2012-0503</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0505.html">CVE-2012-0505</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0506.html">CVE-2012-0506</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0507.html">CVE-2012-0507</cve>
        <bugzilla href="http://bugzilla.redhat.com/788606" id="788606">CVE-2011-5035 OpenJDK: HttpServer no header count limit (Lightweight HTTP Server, 7126960)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788624" id="788624">CVE-2012-0501 OpenJDK: off-by-one bug in ZIP reading code (JRE, 7118283)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788976" id="788976">CVE-2012-0503 OpenJDK: unrestricted use of TimeZone.setDefault() (i18n, 7110687)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788994" id="788994">CVE-2012-0507 OpenJDK: AtomicReferenceArray insufficient array type check (Concurrency, 7082299)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789295" id="789295">CVE-2011-3563 OpenJDK: JavaSound incorrect bounds check (Sound, 7088367)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789297" id="789297">CVE-2012-0502 OpenJDK: KeyboardFocusManager focus stealing (AWT, 7110683)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789299" id="789299">CVE-2012-0505 OpenJDK: incomplete info in the deserialization exception (Serialization, 7110700)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789300" id="789300">CVE-2012-0506 OpenJDK: mutable repository identifiers (CORBA, 7110704)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789301" id="789301">CVE-2012-0497 OpenJDK: insufficient checking of the graphics rendering object (2D, 7112642)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120135007" comment="java-1.6.0-openjdk-demo is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120135008" comment="java-1.6.0-openjdk-demo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120135005" comment="java-1.6.0-openjdk is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120135006" comment="java-1.6.0-openjdk is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120135011" comment="java-1.6.0-openjdk-src is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120135012" comment="java-1.6.0-openjdk-src is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120135013" comment="java-1.6.0-openjdk-devel is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120135014" comment="java-1.6.0-openjdk-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120135009" comment="java-1.6.0-openjdk-javadoc is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120135010" comment="java-1.6.0-openjdk-javadoc is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120136" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0136: libvorbis security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0136-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0136.html" />
      <reference source="CVE" ref_id="CVE-2012-0444" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0444.html" />
    <description>The libvorbis packages contain runtime libraries for use in programs that
support Ogg Vorbis. Ogg Vorbis is a fully open, non-proprietary, patent-and
royalty-free, general-purpose compressed audio format.

A heap-based buffer overflow flaw was found in the way the libvorbis
library parsed Ogg Vorbis media files. If a specially-crafted Ogg Vorbis
media file was opened by an application using libvorbis, it could cause the
application to crash or, possibly, execute arbitrary code with the
privileges of the user running the application. (CVE-2012-0444)

Users of libvorbis should upgrade to these updated packages, which contain
a backported patch to correct this issue. The desktop must be restarted
(log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-15" />
        <updated date="2012-02-15" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0444.html">CVE-2012-0444</cve>
        <bugzilla href="http://bugzilla.redhat.com/786026" id="786026">CVE-2012-0444 Firefox: Ogg Vorbis Decoding Memory Corruption (MFSA 2012-07)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120136005" comment="libvorbis is earlier than 1:1.2.3-4.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120136006" comment="libvorbis is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120136009" comment="libvorbis-devel is earlier than 1:1.2.3-4.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120136010" comment="libvorbis-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120136007" comment="libvorbis-devel-docs is earlier than 1:1.2.3-4.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120136008" comment="libvorbis-devel-docs is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120136012" comment="libvorbis is earlier than 1:1.1.0-4.el4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120136013" comment="libvorbis is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120136014" comment="libvorbis-devel is earlier than 1:1.1.0-4.el4.5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120136015" comment="libvorbis-devel is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120136017" comment="libvorbis is earlier than 1:1.1.2-3.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120136018" comment="libvorbis is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120136019" comment="libvorbis-devel is earlier than 1:1.1.2-3.el5_7.6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120136020" comment="libvorbis-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120137" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0137: texlive security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0137-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0137.html" />
      <reference source="CVE" ref_id="CVE-2010-2642" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-2642.html" />
      <reference source="CVE" ref_id="CVE-2011-0433" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0433.html" />
      <reference source="CVE" ref_id="CVE-2011-0764" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0764.html" />
      <reference source="CVE" ref_id="CVE-2011-1552" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1552.html" />
      <reference source="CVE" ref_id="CVE-2011-1553" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1553.html" />
      <reference source="CVE" ref_id="CVE-2011-1554" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1554.html" />
    <description>TeX Live is an implementation of TeX. TeX takes a text file and a set of
formatting commands as input, and creates a typesetter-independent DeVice
Independent (DVI) file as output. The texlive packages provide a number of
utilities, including dvips.

TeX Live embeds a copy of t1lib. The t1lib library allows you to rasterize
bitmaps from PostScript Type 1 fonts. The following issues affect t1lib
code:

Two heap-based buffer overflow flaws were found in the way t1lib processed
Adobe Font Metrics (AFM) files. If a specially-crafted font file was opened
by a TeX Live utility, it could cause the utility to crash or, potentially,
execute arbitrary code with the privileges of the user running the utility.
(CVE-2010-2642, CVE-2011-0433)

An invalid pointer dereference flaw was found in t1lib. A specially-crafted
font file could, when opened, cause a TeX Live utility to crash or,
potentially, execute arbitrary code with the privileges of the user running
the utility. (CVE-2011-0764)

A use-after-free flaw was found in t1lib. A specially-crafted font file
could, when opened, cause a TeX Live utility to crash or, potentially,
execute arbitrary code with the privileges of the user running the utility.
(CVE-2011-1553)

An off-by-one flaw was found in t1lib. A specially-crafted font file could,
when opened, cause a TeX Live utility to crash or, potentially, execute
arbitrary code with the privileges of the user running the utility.
(CVE-2011-1554)

An out-of-bounds memory read flaw was found in t1lib. A specially-crafted
font file could, when opened, cause a TeX Live utility to crash.
(CVE-2011-1552)

Red Hat would like to thank the Evince development team for reporting
CVE-2010-2642. Upstream acknowledges Jon Larimer of IBM X-Force as the
original reporter of CVE-2010-2642.

All users of texlive are advised to upgrade to these updated packages,
which contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-15" />
        <updated date="2012-02-15" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-2642.html">CVE-2010-2642</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0433.html">CVE-2011-0433</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0764.html">CVE-2011-0764</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1552.html">CVE-2011-1552</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1553.html">CVE-2011-1553</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1554.html">CVE-2011-1554</cve>
        <bugzilla href="http://bugzilla.redhat.com/666318" id="666318">CVE-2010-2642 evince, t1lib: Heap based buffer overflow in DVI file AFM font parser</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/679732" id="679732">CVE-2011-0433 evince, t1lib: Heap-based buffer overflow DVI file AFM font parser</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692853" id="692853">CVE-2011-1552 t1lib: invalid read crash via crafted Type 1 font</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692854" id="692854">CVE-2011-1553 t1lib: Use-after-free via crafted Type 1 font</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692856" id="692856">CVE-2011-1554 t1lib: Off-by-one via crafted Type 1 font</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/692909" id="692909">CVE-2011-0764 t1lib: Invalid pointer dereference via crafted Type 1 font</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137023" comment="texlive-afm is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137024" comment="texlive-afm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137005" comment="texlive is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137006" comment="texlive is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137021" comment="texlive-east-asian is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137022" comment="texlive-east-asian is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137017" comment="kpathsea is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137018" comment="kpathsea is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137015" comment="texlive-utils is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137016" comment="texlive-utils is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137013" comment="texlive-xetex is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137014" comment="texlive-xetex is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137009" comment="texlive-dvips is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137010" comment="texlive-dvips is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137007" comment="texlive-latex is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137008" comment="texlive-latex is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137027" comment="texlive-dviutils is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137028" comment="texlive-dviutils is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137019" comment="mendexk is earlier than 0:2.6e-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137020" comment="mendexk is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137011" comment="kpathsea-devel is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137012" comment="kpathsea-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120137025" comment="texlive-context is earlier than 0:2007-57.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120137026" comment="texlive-context is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120139" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0139: java-1.6.0-sun security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0139-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0139.html" />
      <reference source="CVE" ref_id="CVE-2011-3563" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3563.html" />
      <reference source="CVE" ref_id="CVE-2011-3571" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3571.html" />
      <reference source="CVE" ref_id="CVE-2011-5035" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-5035.html" />
      <reference source="CVE" ref_id="CVE-2012-0498" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0498.html" />
      <reference source="CVE" ref_id="CVE-2012-0499" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0499.html" />
      <reference source="CVE" ref_id="CVE-2012-0500" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0500.html" />
      <reference source="CVE" ref_id="CVE-2012-0501" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0501.html" />
      <reference source="CVE" ref_id="CVE-2012-0502" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0502.html" />
      <reference source="CVE" ref_id="CVE-2012-0503" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0503.html" />
      <reference source="CVE" ref_id="CVE-2012-0505" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0505.html" />
      <reference source="CVE" ref_id="CVE-2012-0506" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0506.html" />
      <reference source="CVE" ref_id="CVE-2012-0507" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0507.html" />
    <description>The Sun 1.6.0 Java release includes the Sun Java 6 Runtime Environment and
the Sun Java 6 Software Development Kit.

This update fixes several vulnerabilities in the Sun Java 6 Runtime
Environment and the Sun Java 6 Software Development Kit. Further
information about these flaws can be found on the Oracle Java SE Critical
Patch page, listed in the References section. (CVE-2011-3563,
CVE-2011-3571, CVE-2011-5035, CVE-2012-0498, CVE-2012-0499, CVE-2012-0500,
CVE-2012-0501, CVE-2012-0502, CVE-2012-0503, CVE-2012-0505, CVE-2012-0506)

All users of java-1.6.0-sun are advised to upgrade to these updated
packages, which provide JDK and JRE 6 Update 31 and resolve these issues.
All running instances of Sun Java must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-16" />
        <updated date="2012-02-16" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3563.html">CVE-2011-3563</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3571.html">CVE-2011-3571</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-5035.html">CVE-2011-5035</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0498.html">CVE-2012-0498</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0499.html">CVE-2012-0499</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0500.html">CVE-2012-0500</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0501.html">CVE-2012-0501</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0502.html">CVE-2012-0502</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0503.html">CVE-2012-0503</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0505.html">CVE-2012-0505</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0506.html">CVE-2012-0506</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0507.html">CVE-2012-0507</cve>
        <bugzilla href="http://bugzilla.redhat.com/788606" id="788606">CVE-2011-5035 OpenJDK: HttpServer no header count limit (Lightweight HTTP Server, 7126960)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788624" id="788624">CVE-2012-0501 OpenJDK: off-by-one bug in ZIP reading code (JRE, 7118283)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788976" id="788976">CVE-2012-0503 OpenJDK: unrestricted use of TimeZone.setDefault() (i18n, 7110687)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788994" id="788994">CVE-2012-0507 OpenJDK: AtomicReferenceArray insufficient array type check (Concurrency, 7082299)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789295" id="789295">CVE-2011-3563 OpenJDK: JavaSound incorrect bounds check (Sound, 7088367)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789297" id="789297">CVE-2012-0502 OpenJDK: KeyboardFocusManager focus stealing (AWT, 7110683)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789299" id="789299">CVE-2012-0505 OpenJDK: incomplete info in the deserialization exception (Serialization, 7110700)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789300" id="789300">CVE-2012-0506 OpenJDK: mutable repository identifiers (CORBA, 7110704)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/790720" id="790720">CVE-2012-0498 Oracle JDK: unspecified vulnerability fixed in 6u31 and 7u3 (2D)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/790722" id="790722">CVE-2012-0499 Oracle JDK: unspecified vulnerability fixed in 6u31 and 7u3 (2D)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/790724" id="790724">CVE-2012-0500 Oracle JDK: unspecified vulnerability fixed in 6u31 and 7u3 (Deployment)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120139013" comment="java-1.6.0-sun-devel is earlier than 1:1.6.0.31-1jpp.1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120139014" comment="java-1.6.0-sun-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120139015" comment="java-1.6.0-sun-demo is earlier than 1:1.6.0.31-1jpp.1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120139016" comment="java-1.6.0-sun-demo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120139011" comment="java-1.6.0-sun-jdbc is earlier than 1:1.6.0.31-1jpp.1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120139012" comment="java-1.6.0-sun-jdbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120139009" comment="java-1.6.0-sun-plugin is earlier than 1:1.6.0.31-1jpp.1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120139010" comment="java-1.6.0-sun-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120139005" comment="java-1.6.0-sun is earlier than 1:1.6.0.31-1jpp.1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120139006" comment="java-1.6.0-sun is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120139007" comment="java-1.6.0-sun-src is earlier than 1:1.6.0.31-1jpp.1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120139008" comment="java-1.6.0-sun-src is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120140" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0140: thunderbird security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0140-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0140.html" />
      <reference source="CVE" ref_id="CVE-2011-3026" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3026.html" />
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

A heap-based buffer overflow flaw was found in the way Thunderbird handled
PNG (Portable Network Graphics) images. An HTML mail message or remote
content containing a specially-crafted PNG image could cause Thunderbird to
crash or, possibly, execute arbitrary code with the privileges of the user
running Thunderbird. (CVE-2011-3026)

All Thunderbird users should upgrade to this updated package, which
corrects this issue. After installing the update, Thunderbird must be
restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-16" />
        <updated date="2012-02-16" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3026.html">CVE-2011-3026</cve>
        <bugzilla href="http://bugzilla.redhat.com/790737" id="790737">CVE-2011-3026 libpng: Heap-buffer-overflow in png_decompress_chunk</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120140005" comment="thunderbird is earlier than 0:3.1.18-2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120080006" comment="thunderbird is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120141" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0141: seamonkey security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0141-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0141.html" />
      <reference source="CVE" ref_id="CVE-2011-3026" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3026.html" />
    <description>SeaMonkey is an open source web browser, e-mail and newsgroup client, IRC
chat client, and HTML editor.

A heap-based buffer overflow flaw was found in the way SeaMonkey handled
PNG (Portable Network Graphics) images. A web page containing a malicious
PNG image could cause SeaMonkey to crash or, possibly, execute arbitrary
code with the privileges of the user running SeaMonkey. (CVE-2011-3026)

All SeaMonkey users should upgrade to these updated packages, which correct
this issue. After installing the update, SeaMonkey must be restarted for
the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-16" />
        <updated date="2012-02-16" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3026.html">CVE-2011-3026</cve>
        <bugzilla href="http://bugzilla.redhat.com/790737" id="790737">CVE-2011-3026 libpng: Heap-buffer-overflow in png_decompress_chunk</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120141010" comment="seamonkey-chat is earlier than 0:1.0.9-79.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084007" comment="seamonkey-chat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120141008" comment="seamonkey-mail is earlier than 0:1.0.9-79.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084005" comment="seamonkey-mail is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120141004" comment="seamonkey-devel is earlier than 0:1.0.9-79.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084013" comment="seamonkey-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120141006" comment="seamonkey-js-debugger is earlier than 0:1.0.9-79.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084009" comment="seamonkey-js-debugger is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120141002" comment="seamonkey is earlier than 0:1.0.9-79.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084003" comment="seamonkey is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120141012" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-79.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120084011" comment="seamonkey-dom-inspector is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120142" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0142: firefox security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0142-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0142.html" />
      <reference source="CVE" ref_id="CVE-2011-3026" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3026.html" />
    <description>Mozilla Firefox is an open source web browser.

A heap-based buffer overflow flaw was found in the way Firefox handled
PNG (Portable Network Graphics) images. A web page containing a malicious
PNG image could cause Firefox to crash or, possibly, execute arbitrary
code with the privileges of the user running Firefox. (CVE-2011-3026)

All Firefox users should upgrade to this updated package, which corrects
this issue. After installing the update, Firefox must be restarted for the
changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-16" />
        <updated date="2012-02-16" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3026.html">CVE-2011-3026</cve>
        <bugzilla href="http://bugzilla.redhat.com/790737" id="790737">CVE-2011-3026 libpng: Heap-buffer-overflow in png_decompress_chunk</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120142002" comment="firefox is earlier than 0:3.6.26-3.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079013" comment="firefox is signed with Red Hat master key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120143" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0143: xulrunner security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0143-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0143.html" />
      <reference source="CVE" ref_id="CVE-2011-3026" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3026.html" />
    <description>XULRunner provides the XUL Runtime environment for applications using the
Gecko layout engine.

A heap-based buffer overflow flaw was found in the way XULRunner handled
PNG (Portable Network Graphics) images. A web page containing a malicious
PNG image could cause an application linked against XULRunner (such as
Firefox) to crash or, potentially, execute arbitrary code with the
privileges of the user running the application. (CVE-2011-3026)

All XULRunner users should upgrade to these updated packages, which correct
this issue. After installing the update, applications using XULRunner must
be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-16" />
        <updated date="2012-02-16" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3026.html">CVE-2011-3026</cve>
        <bugzilla href="http://bugzilla.redhat.com/790737" id="790737">CVE-2011-3026 libpng: Heap-buffer-overflow in png_decompress_chunk</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120143005" comment="xulrunner is earlier than 0:1.9.2.26-2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079006" comment="xulrunner is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120143007" comment="xulrunner-devel is earlier than 0:1.9.2.26-2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079008" comment="xulrunner-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120143010" comment="xulrunner is earlier than 0:1.9.2.26-2.el5_7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079016" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120143012" comment="xulrunner-devel is earlier than 0:1.9.2.26-2.el5_7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079018" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120144" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0144: flash-plugin security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0144-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0144.html" />
      <reference source="CVE" ref_id="CVE-2012-0752" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0752.html" />
      <reference source="CVE" ref_id="CVE-2012-0753" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0753.html" />
      <reference source="CVE" ref_id="CVE-2012-0754" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0754.html" />
      <reference source="CVE" ref_id="CVE-2012-0755" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0755.html" />
      <reference source="CVE" ref_id="CVE-2012-0756" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0756.html" />
      <reference source="CVE" ref_id="CVE-2012-0767" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0767.html" />
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes multiple vulnerabilities in Adobe Flash Player. These
vulnerabilities are detailed on the Adobe security page APSB12-03, listed
in the References section.

Multiple security flaws were found in the way flash-plugin displayed
certain SWF content. An attacker could use these flaws to create a
specially-crafted SWF file that would cause flash-plugin to crash or,
potentially, execute arbitrary code when the victim loaded a page
containing the specially-crafted SWF content. (CVE-2012-0752,
CVE-2012-0753, CVE-2012-0754, CVE-2012-0755, CVE-2012-0756)

A flaw in flash-plugin could allow an attacker to conduct cross-site
scripting (XSS) attacks if a victim were tricked into visiting a
specially-crafted web page. (CVE-2012-0767)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.3.183.15.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-17" />
        <updated date="2012-02-17" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0752.html">CVE-2012-0752</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0753.html">CVE-2012-0753</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0754.html">CVE-2012-0754</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0755.html">CVE-2012-0755</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0756.html">CVE-2012-0756</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0767.html">CVE-2012-0767</cve>
        <bugzilla href="http://bugzilla.redhat.com/791034" id="791034">CVE-2012-0752 CVE-2012-0753 CVE-2012-0754 CVE-2012-0755 CVE-2012-0756 flash-plugin: multiple code execution flaws (APSB12-03)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/791035" id="791035">CVE-2012-0767 flash-plugin: universal cross-site scripting flaw (APSB12-03)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120144005" comment="flash-plugin is earlier than 0:10.3.183.15-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120144006" comment="flash-plugin is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120150" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0150: Red Hat Enterprise Linux 5.8 kernel update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0150-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0150.html" />
      <reference source="CVE" ref_id="CVE-2011-1083" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1083.html" />
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issue:

* A flaw was found in the way the Linux kernel's Event Poll (epoll)
subsystem handled large, nested epoll structures. A local, unprivileged
user could use this flaw to cause a denial of service. (CVE-2011-1083,
Moderate)

Red Hat would like to thank Nelson Elhage for reporting this issue.

These updated kernel packages include a number of bug fixes and
enhancements. Space precludes documenting all of these changes in this
advisory. Users are directed to the Red Hat Enterprise Linux 5.8 Technical
Notes, linked to in the References, for information on the most significant
of these changes.

All Red Hat Enterprise Linux 5 users are advised to install these updated
packages, which correct these issues and add these enhancements. The system
must be rebooted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1083.html">CVE-2011-1083</cve>
        <bugzilla href="http://bugzilla.redhat.com/485173" id="485173">kernel/module-verify-sig.c with memory uncleaned bug</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/516170" id="516170">kernel multipath driver behaves badly on medium errors</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/526862" id="526862">[RHEL5 Xen]: Mask out CPU features by default</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/543064" id="543064">No NUMA node hash function found on a EX machine</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/571737" id="571737">Cannot use Quickcam Pro 9000 with Ekiga, fails with "uvcvideo: Failed to query ..."</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/585935" id="585935">Bug in RHEL-5.4/5.5 nfs_access_cache_shrinker</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/608156" id="608156">kernel panic if bonding initialization fails</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/618317" id="618317">RFE: RHEL5 Xen: support online dynamic resize of guest virtual disks</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/664653" id="664653">[5.4] OS cannot recognize DVD disk replace in rescue mode.</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/668027" id="668027">unexpected error message when sending a unsolicited NA from user code</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/668529" id="668529">Spare disk added to a raid1 array by mdadm command is dropped upon next boot.</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/674663" id="674663">vlapic: Fix possible guest tick losing after save/restore</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/681578" id="681578">CVE-2011-1083 kernel: excessive in kernel CPU consumption when creating large nested epoll structures</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/681902" id="681902">GFS2: Add readahead to sequential directory traversal</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/683372" id="683372">NFS4: Incorrect server behavior when using OPEN call with O_CREATE on a directory on which the process has no WRITE permissions.</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/688673" id="688673">PCI Virtual Function Passthrough - SR-IOV, Paravirt Guest fails to obtain IRQ after reboot</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/688791" id="688791">dropwatch>stop: Waiting for deactivation ack  (forever)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/691087" id="691087">Incorrect values in /proc/sys/vm/dirty_writeback_centises and dirty_expire_centisecs</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/694625" id="694625">Non-responsive scsi target leads to excessive scsi recovery and dm-mp failover time</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/697021" id="697021">Patch needed to allow MTU >1500 on vif prior to connecting to bridge</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/698842" id="698842">kvmclock: MP-BIOS bug: 8254 timer not connected to IO-APIC</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/698928" id="698928">VLAN interface with changed MAC address fails to communicate</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/700565" id="700565">RHEL6.1 32bit xen hvm guest crash randomly</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/700752" id="700752">32-bit PV guest crash on restore on x64_86 host</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/700886" id="700886">RHEL5.6 TSC used as default clock source on multi-chassis system</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/703150" id="703150">multiple resource leaks on error paths in blkfront and netfront</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/703505" id="703505">300 seconds time shift in vdso version of clock_gettime()</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/704921" id="704921">panic in cifsd code after unexpected lookup error -88.</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/706339" id="706339">open/closed files in cifs mount points</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/707966" id="707966">2.6.18-238.1.1.el5 or newer won't boot under Xen HVM due to linux-2.6-virt-nmi-don-t-print-nmi-stuck-messages-on-guests.patch</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/709271" id="709271">net.ipv6.conf.default.dad_transmits has no effect on tentative IPv6 addresses</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/709515" id="709515">Kernel panic at nfs4_callback_compound+0x2dd</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/711070" id="711070">mask the SMEP bit for PV, do the same or backport SMEP emulation for HVM</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/712439" id="712439">Backport "x86: extend debug key 't' to collect useful clock skew info"</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/712440" id="712440">Backport "vmx: Print advanced features during boot"</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/712441" id="712441">Backport "x86/hvm: fix off-by-one errors in vcpuid range checks"</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/713702" id="713702">pull missing fixes from upstream x86_emulate()</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/714053" id="714053">couple nice-to-have xen hypervisor patches</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/714670" id="714670">TCP_CRR and concurrent TCP stream tests over IPv6 sometime fails on rhel5.7</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/715501" id="715501">ext4: Don't error out the fs if the user tries to make a file too big</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/716834" id="716834">'dmesg' command  is swamped with the message: pci_set_power_state(): 0000:05:05.0: state=3, current state=5</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/717434" id="717434">Unable to attach a cdrom device to guest domain</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/717850" id="717850">miss xmit_hash_policy=layer2+3 in modinfo bonding output</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/718232" id="718232">[xfs] mis-sized O_DIRECT I/O results in hung task timeouts</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/718641" id="718641">Can't change lacp_rate in bonding mode=802.3ad</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/718988" id="718988">[EL5.7] igb: failed to activate WOL on 2nd LAN port on i350</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/720347" id="720347">RHEL 6.1 Xen paravirt guest is getting network outage during live migration (host side)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/720551" id="720551">xfs_error_report() oops when passed-in mp is NULL</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/720936" id="720936">Windows guests may hang/BSOD on some AMD processors.</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/720986" id="720986">vlapic: backport EOI fast path</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/723755" id="723755">win2003 i386 guest BSOD when created with e1000 nic</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/728508" id="728508">Huge performance regression in NFS client</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/729261" id="729261">ext3/ext4 mbcache  causes high CPU load</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/732752" id="732752">exclude VMX_PROCBASED_CTL2 from the MSRs a VMX guest is allowed to access</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/733416" id="733416">netfront MTU drops to 1500 after domain migration</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/734708" id="734708">xen modules - unable to handle kernel NULL pointer dereference</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/734900" id="734900">Panic, NMI Watchdog detected LOCKUP on CPU 6</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/735477" id="735477">nfs4_getfacl decoding causes kernel oops</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/740203" id="740203">Host crash when pass-through fails</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/740299" id="740299">[RTC] - The ioctl RTC_IRPQ_READ doesn't return the correct value</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/742880" id="742880">[RFE] backport Xen watchdog (hypervisor side only)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/752626" id="752626">BNX2I: Fixed the endian on TTT for NOP out transmission</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/753729" id="753729">system cannot suspend with "stopping tasks timed out - bnx2i_thread/0 remaining"</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/771592" id="771592">Install RHEV-H to virtual machine cause VM kernel panic when boot</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/772578" id="772578">[ALL LANG] [anaconda] The installation halted when clicking 'Skip' button (select 'Skip entering Installation Number')</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150018" comment="kernel-kdump-devel is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007017" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150012" comment="kernel-devel is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150020" comment="kernel-PAE is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150016" comment="kernel-kdump is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007019" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150010" comment="kernel-xen-devel is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007011" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150008" comment="kernel-debug-devel is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007009" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150006" comment="kernel-debug is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150004" comment="kernel-headers is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150002" comment="kernel is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150022" comment="kernel-PAE-devel is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150014" comment="kernel-xen is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007015" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120150024" comment="kernel-doc is earlier than 0:2.6.18-308.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120152" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0152: kexec-tools security, bug fix, and enhancement update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0152-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0152.html" />
      <reference source="CVE" ref_id="CVE-2011-3588" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3588.html" />
      <reference source="CVE" ref_id="CVE-2011-3589" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3589.html" />
      <reference source="CVE" ref_id="CVE-2011-3590" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3590.html" />
    <description>The kexec-tools package contains the /sbin/kexec binary and utilities that 
together form the user-space component of the kernel's kexec feature. The 
/sbin/kexec binary facilitates a new kernel to boot using the kernel's 
kexec feature either on a normal or a panic reboot. The kexec fastboot 
mechanism allows booting a Linux kernel from the context of an already 
running kernel.

Kdump used the SSH (Secure Shell) "StrictHostKeyChecking=no" option when
dumping to SSH targets, causing the target kdump server's SSH host key not
to be checked. This could make it easier for a man-in-the-middle attacker
on the local network to impersonate the kdump SSH target server and
possibly gain access to sensitive information in the vmcore dumps.
(CVE-2011-3588)

The mkdumprd utility created initrd files with world-readable permissions.
A local user could possibly use this flaw to gain access to sensitive 
information, such as the private SSH key used to authenticate to a remote 
server when kdump was configured to dump to an SSH target. (CVE-2011-3589)

The mkdumprd utility included unneeded sensitive files (such as all files 
from the "/root/.ssh/" directory and the host's private SSH keys) in the 
resulting initrd. This could lead to an information leak when initrd 
files were previously created with world-readable permissions. Note: With 
this update, only the SSH client configuration, known hosts files, and the 
SSH key configured via the newly introduced sshkey option in 
"/etc/kdump.conf" are included in the initrd. The default is the key 
generated when running the "service kdump propagate" command, 
"/root/.ssh/kdump_id_rsa". (CVE-2011-3590)

Red Hat would like to thank Kevan Carstensen for reporting these issues.

This updated kexec-tools package also includes numerous bug fixes and
enhancements. Space precludes documenting all of these changes in this
advisory. Users are directed to the Red Hat Enterprise Linux 5.8 Technical
Notes, linked to in the References, for information on the most significant
of these changes.

All users of kexec-tools are advised to upgrade to this updated package, 
which resolves these security issues, fixes these bugs and adds these 
enhancements.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3588.html">CVE-2011-3588</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3589.html">CVE-2011-3589</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3590.html">CVE-2011-3590</cve>
        <bugzilla href="http://bugzilla.redhat.com/662530" id="662530">ln: creating symbolic link `/tmp/initrd.ta4308/lib/libc.so.6' to `/lib/power6/libc.so.6': File exists</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/678308" id="678308">kexec kernel crashes due to use of reserved memory range</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/709622" id="709622">Non-portable "while" loop form used</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/716439" id="716439">CVE-2011-3588 CVE-2011-3589 CVE-2011-3590 kexec-tools: Multiple security flaws by management of kdump core files and ramdisk images</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/748319" id="748319">fsck: WARNING: couldn't open /etc/fstab: No such file or directory</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120152002" comment="kexec-tools is earlier than 0:1.102pre-154.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120152003" comment="kexec-tools is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120153" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0153: sos security, bug fix, and enhancement update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0153-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0153.html" />
      <reference source="CVE" ref_id="CVE-2011-4083" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4083.html" />
    <description>Sos is a set of tools that gather information about system hardware and
configuration.

The sosreport utility incorrectly included Certificate-based Red Hat
Network private entitlement keys in the resulting archive of debugging
information. An attacker able to access the archive could use the keys to
access Red Hat Network content available to the host. This issue did not
affect users of Red Hat Network Classic. (CVE-2011-4083)

This updated sos package also includes numerous bug fixes and enhancements.
Space precludes documenting all of these changes in this advisory. Users
are directed to the Red Hat Enterprise Linux 5.8 Technical Notes, linked
to in the References, for information on the most significant of these
changes.

All sos users are advised to upgrade to this updated package, which
resolves these issues and adds these enhancements.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4083.html">CVE-2011-4083</cve>
        <bugzilla href="http://bugzilla.redhat.com/627416" id="627416">sos rfe - request to update sos plugin cs.py for Red Hat Certificate System</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/641020" id="641020">[RFE] improve sos plugin to capture MRG GRID related information</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/655046" id="655046">sosreport French translation of y/n prompt is wrong and confusing</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/673246" id="673246">[RFE] include output of ibv_devinfo command (libibverbs-utils package) in sosreport</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/677123" id="677123">RFE: iSCSI Target plugin for sosreport.</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/708346" id="708346">sosreport hangs the system when multiple SIGTERMs received</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/716987" id="716987">Relative symlink in created report for truncated log files is wrong</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/717167" id="717167">make non-standard log file collection more robust</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/717480" id="717480">Fix problems hidden by __raisePlugins__ = 0, create logging for plugin errors</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/717962" id="717962">When copying directory into report using addCopySpec, links inside are not handled correctly</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/726421" id="726421">[RFE] sosreport should collect the result of ethtool -g, ethtool -c, and ethtool -a by default</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/749383" id="749383">CVE-2011-4083 sos: sosreport is gathering certificate-based RHN entitlement private keys</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/750573" id="750573">sosreport cluster modules fail with badly formed cluster.conf</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120153002" comment="sos is earlier than 0:1.7-9.62.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120153003" comment="sos is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120301" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0301: ImageMagick security and bug fix update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0301-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0301.html" />
      <reference source="CVE" ref_id="CVE-2010-4167" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4167.html" />
    <description>ImageMagick is an image display and manipulation tool for the X Window
System that can read and write multiple image formats.

It was found that ImageMagick utilities tried to load ImageMagick
configuration files from the current working directory. If a user ran an
ImageMagick utility in an attacker-controlled directory containing a
specially-crafted ImageMagick configuration file, it could cause the
utility to execute arbitrary code. (CVE-2010-4167)

This update also fixes the following bugs:

* Previously, the "identify -verbose" command failed with an assertion if
there was no image information available. An upstream patch has been
applied, so that GetImageOption() is now called correctly. Now, the
"identify -verbose" command works correctly even if no image information is
available. (BZ#502626)

* Previously, an incorrect use of the semaphore data type led to a
deadlock. As a consequence, the ImageMagick utility could become
unresponsive when converting JPEG files to PDF (Portable Document Format)
files. A patch has been applied to address the deadlock issue, and JPEG
files can now be properly converted to PDF files. (BZ#530592)

* Previously, running the "convert" command with the "-color" option failed
with a memory allocation error. The source code has been modified to fix
problems with memory allocation. Now, using the "convert" command with the
"-color" option works correctly. (BZ#616538)

* Previously, ImageMagick could become unresponsive when using the
"display" command on damaged GIF files. The source code has been revised to
prevent the issue. ImageMagick now produces an error message in the
described scenario. A file selector is now opened so the user can choose
another image to display. (BZ#693989)

* Prior to this update, the "convert" command did not handle rotated PDF
files correctly. As a consequence, the output was rendered as a portrait
with the content being cropped. With this update, the PDF render geometry
is modified, and the output produced by the "convert" command is properly
rendered as a landscape. (BZ#694922)

All users of ImageMagick are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. All running
instances of ImageMagick must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4167.html">CVE-2010-4167</cve>
        <bugzilla href="http://bugzilla.redhat.com/580535" id="580535">Using "-page" option in ImageMagick's "convert" set bogus page size in PostScript</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/652860" id="652860">CVE-2010-4167 ImageMagick: configuration files read from $CWD may allow arbitrary code execution</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120301006" comment="ImageMagick-devel is earlier than 0:6.2.8.0-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301007" comment="ImageMagick-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120301002" comment="ImageMagick is earlier than 0:6.2.8.0-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301003" comment="ImageMagick is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120301008" comment="ImageMagick-c++ is earlier than 0:6.2.8.0-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301009" comment="ImageMagick-c++ is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120301010" comment="ImageMagick-c++-devel is earlier than 0:6.2.8.0-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301011" comment="ImageMagick-c++-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120301004" comment="ImageMagick-perl is earlier than 0:6.2.8.0-12.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301005" comment="ImageMagick-perl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120302" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0302: cups security and bug fix update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0302-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0302.html" />
      <reference source="CVE" ref_id="CVE-2011-2896" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2896.html" />
    <description>The Common UNIX Printing System (CUPS) provides a portable printing layer
for Linux, UNIX, and similar operating systems.

A heap-based buffer overflow flaw was found in the Lempel-Ziv-Welch (LZW)
decompression algorithm implementation used by the CUPS GIF image format
reader. An attacker could create a malicious GIF image file that, when
printed, could possibly cause CUPS to crash or, potentially, execute
arbitrary code with the privileges of the "lp" user. (CVE-2011-2896)

This update also fixes the following bugs:

* Prior to this update, the "Show Completed Jobs," "Show All Jobs," and
"Show Active Jobs" buttons returned results globally across all printers
and not the results for the specified printer. With this update, jobs from
only the selected printer are shown. (BZ#625900)

* Prior to this update, the code of the serial backend contained a wrong
condition. As a consequence, print jobs on the raw print queue could not be
canceled. This update modifies the condition in the serial backend code.
Now, the user can cancel these print jobs. (BZ#625955)

* Prior to this update, the textonly filter did not work if used as a pipe,
for example when the command line did not specify the filename and the
number of copies was always 1. This update modifies the condition in the
textonly filter. Now, the data are sent to the printer regardless of the
number of copies specified. (BZ#660518)

* Prior to this update, the file descriptor count increased until it ran
out of resources when the cups daemon was running with enabled
Security-Enhanced Linux (SELinux) features. With this update, all resources
are allocated only once. (BZ#668009)

* Prior to this update, CUPS incorrectly handled the en_US.ASCII value for
the LANG environment variable. As a consequence, the lpadmin, lpstat, and
lpinfo binaries failed to write to standard output if using LANG with the
value. This update fixes the handling of the en_US.ASCII value and the
binaries now write to standard output properly. (BZ#759081)

All users of cups are advised to upgrade to these updated packages, which
contain backported patches to resolve these issues. After installing this
update, the cupsd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2896.html">CVE-2011-2896</cve>
        <bugzilla href="http://bugzilla.redhat.com/625900" id="625900">STR #3436: Jobs buttons not working correctly when viewing a specific printer</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/625955" id="625955">Serial back end has inverted SIGTERM block</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/660518" id="660518">textonly filter won't work as a pipe with copies=1</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/668009" id="668009">avc calls leak file descriptors</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/727800" id="727800">CVE-2011-2896 David Koblas' GIF decoder LZW decoder buffer overflow</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120302008" comment="cups-lpd is earlier than 1:1.3.7-30.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120302009" comment="cups-lpd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120302004" comment="cups-libs is earlier than 1:1.3.7-30.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120302005" comment="cups-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120302006" comment="cups-devel is earlier than 1:1.3.7-30.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120302007" comment="cups-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120302002" comment="cups is earlier than 1:1.3.7-30.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120302003" comment="cups is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120306" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0306: krb5 security and bug fix update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0306-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0306.html" />
      <reference source="CVE" ref_id="CVE-2011-1526" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1526.html" />
    <description>Kerberos is a network authentication system which allows clients and
servers to authenticate to each other using symmetric encryption and a
trusted third-party, the Key Distribution Center (KDC).

It was found that ftpd, a Kerberos-aware FTP server, did not properly drop
privileges. On Red Hat Enterprise Linux 5, the ftpd daemon did not check
for the potential failure of the effective group ID change system call. If
the group ID change failed, a remote FTP user could use this flaw to gain
unauthorized read or write access to files that are owned by the root
group. (CVE-2011-1526)

Red Hat would like to thank the MIT Kerberos project for reporting this
issue. Upstream acknowledges Tim Zingelman as the original reporter.

This update also fixes the following bugs:

* Due to a mistake in the Kerberos libraries, a client could fail to
contact a Key Distribution Center (KDC) or terminate unexpectedly if the
client had already more than 1024 file descriptors in use. This update
backports modifications to the Kerberos libraries and the libraries use
the poll() function instead of the select() function, as poll() does not
have this limitation. (BZ#701444)

* The KDC failed to release memory when processing a TGS (ticket-granting
server) request from a client if the client request included an
authenticator with a subkey. As a result, the KDC consumed an excessive
amount of memory. With this update, the code releasing the memory has been
added and the problem no longer occurs. (BZ#708516)

* Under certain circumstances, if services requiring Kerberos
authentication sent two authentication requests to the authenticating
server, the second authentication request was flagged as a replay attack.
As a result, the second authentication attempt was denied. This update
applies an upstream patch that fixes this bug. (BZ#713500)

* Previously, if Kerberos credentials had expired, the klist command could
terminate unexpectedly with a segmentation fault when invoked with the -s
option. This happened when klist encountered and failed to process an entry
with no realm name while scanning the credential cache. With this update,
the underlying code has been modified and the command handles such entries
correctly. (BZ#729067)

* Due to a regression, multi-line FTP macros terminated prematurely with a
segmentation fault. This occurred because the previously-added patch failed
to properly support multi-line macros. This update restores the support for
multi-line macros and the problem no longer occurs. (BZ#735363, BZ#736132)

All users of krb5 are advised to upgrade to these updated packages, which
resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1526.html">CVE-2011-1526</cve>
        <bugzilla href="http://bugzilla.redhat.com/701444" id="701444">Fix libkrb5 to work when > 1024 file descriptors are in use</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/708516" id="708516">memory leak during kdc TGS request</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/711419" id="711419">CVE-2011-1526 krb5, krb5-appl: ftpd incorrect group privilege dropping (MITKRB5-SA-2011-005)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/729067" id="729067">klist -s segfaults with expired credentials</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/750823" id="750823">Newly introduced defect into krb5</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120306006" comment="krb5-libs is earlier than 0:1.6.1-70.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120306007" comment="krb5-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120306010" comment="krb5-server is earlier than 0:1.6.1-70.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120306011" comment="krb5-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120306002" comment="krb5 is earlier than 0:1.6.1-70.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120306003" comment="krb5 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120306012" comment="krb5-server-ldap is earlier than 0:1.6.1-70.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120306013" comment="krb5-server-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120306008" comment="krb5-workstation is earlier than 0:1.6.1-70.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120306009" comment="krb5-workstation is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120306004" comment="krb5-devel is earlier than 0:1.6.1-70.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120306005" comment="krb5-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120307" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0307: util-linux security, bug fix, and enhancement update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0307-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0307.html" />
      <reference source="CVE" ref_id="CVE-2011-1675" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1675.html" />
      <reference source="CVE" ref_id="CVE-2011-1677" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1677.html" />
    <description>The util-linux package contains a large variety of low-level system
utilities that are necessary for a Linux system to function. Among others,
util-linux contains the fdisk configuration tool and the login program.

Multiple flaws were found in the way the mount and umount commands
performed mtab (mounted file systems table) file updates. A local,
unprivileged user allowed to mount or unmount file systems could use these
flaws to corrupt the mtab file and create a stale lock file, preventing
other users from mounting and unmounting file systems. (CVE-2011-1675,
CVE-2011-1677)

This update also fixes the following bugs:

* When the user logged into a telnet server, the login utility did not
update the utmp database properly if the utility was executed from the
telnetd daemon. This was due to telnetd not creating an appropriate entry
in a utmp file before executing login. With this update, correct entries
are created and the database is updated properly. (BZ#646300)

* Various options were not described on the blockdev(8) manual page. With
this update, the blockdev(8) manual page includes all the relevant options.
(BZ#650937)

* Prior to this update, the build process of the util-linux package failed
in the po directory with the following error message: "@MKINSTALLDIRS@:
No such file or directory". An upstream patch has been applied to address
this issue, and the util-linux package now builds successfully. (BZ#677452)

* Previously, the ipcs(1) and ipcrm(1) manual pages mentioned an invalid
option, "-b". With this update, only valid options are listed on those
manual pages. (BZ#678407)

* Previously, the mount(8) manual page contained incomplete information
about the ext4 and XFS file systems. With this update, the mount(8) manual
page contains the missing information. (BZ#699639)

In addition, this update adds the following enhancements:

* Previously, if DOS mode was enabled on a device, the fdisk utility could
report error messages similar to the following:

Partition 1 has different physical/logical beginnings (non-Linux?):
phys=(0, 1, 1) logical=(0, 2, 7)

This update enables users to switch off DOS compatible mode (by specifying
the "-c" option), and such error messages are no longer displayed.
(BZ#678430)

* This update adds the "fsfreeze" command which halts access to a file
system on a disk. (BZ#726572)

All users of util-linux are advised to upgrade to this updated package,
which contains backported patches to correct these issues and add these
enhancements.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1675.html">CVE-2011-1675</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1677.html">CVE-2011-1677</cve>
        <bugzilla href="http://bugzilla.redhat.com/646300" id="646300">login doesn't update /var/run/utmp properly</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/650937" id="650937">blockdev man page missing information</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/677452" id="677452">util-linux fails to build with gettext-0.17</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/678407" id="678407">[RHEL 5] ipcs and ipcrm in wrong man section</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/695916" id="695916">CVE-2011-1675 util-linux: mount fails to anticipate RLIMIT_FSIZE</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/695924" id="695924">CVE-2011-1677 util-linux: umount may fail to remove /etc/mtab~ lock file</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/699639" id="699639">mount man page is missing support for ext4/xfs</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120307002" comment="util-linux is earlier than 0:2.13-0.59.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120307003" comment="util-linux is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120308" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0308: busybox security and bug fix update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0308-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0308.html" />
      <reference source="CVE" ref_id="CVE-2006-1168" ref_url="https://www.redhat.com/security/data/cve/CVE-2006-1168.html" />
      <reference source="CVE" ref_id="CVE-2011-2716" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2716.html" />
    <description>BusyBox provides a single binary that includes versions of a large number
of system commands, including a shell. This can be very useful for
recovering from certain types of system failures, particularly those
involving broken shared libraries.

A buffer underflow flaw was found in the way the uncompress utility of
BusyBox expanded certain archive files compressed using Lempel-Ziv
compression. If a user were tricked into expanding a specially-crafted
archive file with uncompress, it could cause BusyBox to crash or,
potentially, execute arbitrary code with the privileges of the user running
BusyBox. (CVE-2006-1168)

The BusyBox DHCP client, udhcpc, did not sufficiently sanitize certain
options provided in DHCP server replies, such as the client hostname. A
malicious DHCP server could send such an option with a specially-crafted
value to a DHCP client. If this option's value was saved on the client
system, and then later insecurely evaluated by a process that assumes the
option is trusted, it could lead to arbitrary code execution with the
privileges of that process. Note: udhcpc is not used on Red Hat Enterprise
Linux by default, and no DHCP client script is provided with the busybox
packages. (CVE-2011-2716)

This update also fixes the following bugs:

* Prior to this update, the cp command wrongly returned the exit code 0 to
indicate success if a device ran out of space while attempting to copy
files of more than 4 gigabytes. This update modifies BusyBox, so that in
such situations, the exit code 1 is returned. Now, the cp command shows
correctly whether a process failed. (BZ#689659)

* Prior to this update, the findfs command failed to check all existing
block devices on a system with thousands of block device nodes in "/dev/".
This update modifies BusyBox so that findfs checks all block devices even
in this case. (BZ#756723)

All users of busybox are advised to upgrade to these updated packages,
which correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2006-1168.html">CVE-2006-1168</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2716.html">CVE-2011-2716</cve>
        <bugzilla href="http://bugzilla.redhat.com/201919" id="201919">CVE-2006-1168 ncompress: .bss buffer underflow in decompression</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/689659" id="689659">"busybox cp" does not return a correct exit code when "No space left on device"</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/725364" id="725364">CVE-2011-2716 busybox: udhcpc insufficient checking of DHCP options</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120308004" comment="busybox-anaconda is earlier than 1:1.2.0-13.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120308005" comment="busybox-anaconda is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120308002" comment="busybox is earlier than 1:1.2.0-13.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120308003" comment="busybox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120309" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0309: sudo security and bug fix update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0309-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0309.html" />
      <reference source="CVE" ref_id="CVE-2011-0010" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-0010.html" />
    <description>The sudo (superuser do) utility allows system administrators to give
certain users the ability to run commands as root.

A flaw was found in the sudo password checking logic. In configurations
where the sudoers settings allowed a user to run a command using sudo
with only the group ID changed, sudo failed to prompt for the user's
password before running the specified command with the elevated group
privileges. (CVE-2011-0010)

In addition, this update fixes the following bugs:

* A NULL pointer dereference bug caused the sudo utility to terminate
unexpectedly with a segmentation fault. This happened if the utility was
run with the -g option and configured not to demand the password from the
user who ran the sudo utility. With this update, the code has been modified
and the problem no longer occurs. (BZ#673072)

* The sudo utility failed to load sudoers from an LDAP (Lightweight
Directory Access Protocol) server after the sudo tool was upgraded. This
happened because the upgraded nsswitch.conf file did not contain the
instruction to search for sudoers on the LDAP server. This update adds the
lost instruction to /etc/nsswitch.conf and the system searches for sources
of sudoers on the local file system and then on LDAP, if applicable.
(BZ#617061)

* The sudo tool interpreted a Runas alias specifying a group incorrectly as
a user alias and the alias seemed to be ignored. With this update, the code
for interpreting such aliases has been modified and the Runas group aliases
are honored as expected. (BZ#627543)

* Prior to this update, sudo did not parse comment characters (#) in the
ldap.conf file correctly and could fail to work. With this update, parsing
of the LDAP configuration file has been modified and the comment characters
are parsed correctly. (BZ#750318)

* The sudo utility formats its output to fit the width of the terminal
window. However, this behavior is undesirable if the output is redirected
through a pipeline. With this update, the output formatting is not applied
in the scenario described. (BZ#697111)

* Previously, the sudo utility performed Security-Enhanced Linux (SELinux)
related initialization after switching to an unprivileged user. This
prevented the correct setup of the SELinux environment before executing the
specified command and could potentially cause an access denial. The bug has
been fixed by backporting the SELinux related code and the execution model
from a newer version of sudo. (BZ#477185)

* On execv(3) function failure, the sudo tool executed an auditing call
before reporting the failure. The call reset the error state and,
consequently, the tool incorrectly reported that the command succeeded.
With this update, the code has been modified and the problem no longer
occurs. (BZ#673157)

All users of sudo are advised to upgrade to this updated package, which
resolves these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-0010.html">CVE-2011-0010</cve>
        <bugzilla href="http://bugzilla.redhat.com/477185" id="477185">sudo changes uid before calling SELInux calls, preventing it from setting terminal context when using non priv account</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/627543" id="627543">The Runas_Spec are ignored in sudoers file</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/668879" id="668879">CVE-2011-0010 sudo: does not ask for password on GID changes</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/673072" id="673072">sudo segfault</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/673157" id="673157">sudo fails to report error correctly when execv(3) fails</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/697111" id="697111">sudo -l inserts new lines based on terminal width, causing errors when output is piped.</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120309002" comment="sudo is earlier than 0:1.7.2p1-13.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120309003" comment="sudo is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120310" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0310: nfs-utils security, bug fix, and enhancement update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0310-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0310.html" />
      <reference source="CVE" ref_id="CVE-2011-1749" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1749.html" />
    <description>The nfs-utils package provides a daemon for the kernel Network File System
(NFS) server, and related tools such as the mount.nfs, umount.nfs, and
showmount programs.

It was found that the mount.nfs tool did not handle certain errors
correctly when updating the mtab (mounted file systems table) file. A
local attacker could use this flaw to corrupt the mtab file.
(CVE-2011-1749)

This update also fixes the following bugs:

* The nfs service failed to start if the NFSv1, NFSv2, and NFSv4 support
was disabled (the MOUNTD_NFS_V1="no", MOUNTD_NFS_V2="no" MOUNTD_NFS_V3="no"
lines in /etc/sysconfig/nfs were uncommented) because the mountd daemon
failed to handle the settings correctly. With this update, the underlying
code has been modified and the nfs service starts successfully in the
described scenario. (BZ#529588)

* When a user's Kerberos ticket expired, the "sh rpc.gssd" messages flooded
the /var/log/messages file. With this update, the excessive logging has
been suppressed. (BZ#593097)

* The crash simulation (SM_SIMU_CRASH) of the rpc.statd service had a
vulnerability that could be detected by ISS (Internet Security Scanner). As
a result, the rpc.statd service terminated unexpectedly with the following
error after an ISS scan:

  rpc.statd[xxxx]: recv_rply: can't decode RPC message!
  rpc.statd[xxxx]: *** SIMULATING CRASH! ***
  rpc.statd[xxxx]: unable to register (statd, 1, udp).

However, the rpc.statd service ignored SM_SIMU_CRASH. This update removes
the simulation crash support from the service and the problem no longer
occurs. (BZ#600497)

* The nfs-utils init scripts returned incorrect status codes in the
following cases: if the rpcgssd and rpcsvcgssd daemon were not configured,
were provided an unknown argument, their function call failed, if a program
was no longer running and a /var/lock/subsys/$SERVICE file existed, if
starting a service under an unprivileged user, if a program was no longer
running and its pid file still existed in the /var/run/ directory. With
this update, the correct codes are returned in these scenarios. (BZ#710020)

* The "nfsstat -m" command did not display NFSv4 mounts. With this update,
the underlying code has been modified and the command returns the list of
all mounts, including any NFSv4 mounts, as expected. (BZ#712438)

* Previously, the nfs manual pages described the fsc mount option; however,
this option is not supported. This update removes the option description
from the manual pages. (BZ#715523)

* The nfs-utils preinstall scriptlet failed to change the default group ID
for the nfsnobody user to 65534. This update modifies the preinstall
scriptlet and the default group ID is changed to 65534 after nfs-utils
upgrade as expected. (BZ#729603)

* The mount.nfs command with the "-o retry" option did not try to mount for
the time specified in the "retry=X" configuration option. This occurred due
to incorrect error handling by the command. With this update, the
underlying code has been fixed and the "-o retry" option works as expected.
(BZ#736677)

In addition, this update adds the following enhancement:

* The noresvport option, which allows NFS clients to use insecure ports
(ports above 1023), has been added to the NFS server configuration options.
(BZ#513094)

All nfs-utils users are advised to upgrade to this updated package, which
resolves these issues and adds this enhancement. After installing this
update, the nfs service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1749.html">CVE-2011-1749</cve>
        <bugzilla href="http://bugzilla.redhat.com/697975" id="697975">CVE-2011-1749 nfs-utils: mount.nfs fails to anticipate RLIMIT_FSIZE</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120310002" comment="nfs-utils is earlier than 1:1.0.9-60.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120310003" comment="nfs-utils is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120311" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0311: ibutils security and bug fix update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0311-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0311.html" />
      <reference source="CVE" ref_id="CVE-2008-3277" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-3277.html" />
    <description>The ibutils packages provide InfiniBand network and path diagnostics.

It was found that the ibmssh executable had an insecure relative RPATH
(runtime library search path) set in the ELF (Executable and Linking
Format) header. A local user able to convince another user to run ibmssh in
an attacker-controlled directory could run arbitrary code with the
privileges of the victim. (CVE-2008-3277)

This update also fixes the following bug:

* Under certain circumstances, the "ibdiagnet -r" command could suffer from
memory corruption and terminate with a "double free or corruption" message
and a backtrace. With this update, the correct memory management function
is used to prevent the corruption. (BZ#711779)

All users of ibutils are advised to upgrade to these updated packages,
which contain backported patches to correct these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2008-3277.html">CVE-2008-3277</cve>
        <bugzilla href="http://bugzilla.redhat.com/457935" id="457935">CVE-2008-3277 ibutils: insecure relative RPATH</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120311004" comment="ibutils-devel is earlier than 0:1.2-11.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120311005" comment="ibutils-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120311002" comment="ibutils is earlier than 0:1.2-11.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120311003" comment="ibutils is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120311006" comment="ibutils-libs is earlier than 0:1.2-11.2.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120311007" comment="ibutils-libs is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120312" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0312: initscripts security and bug fix update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0312-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0312.html" />
      <reference source="CVE" ref_id="CVE-2008-1198" ref_url="https://www.redhat.com/security/data/cve/CVE-2008-1198.html" />
    <description>The initscripts package contains system scripts to boot your system, change
runlevels, activate and deactivate most network interfaces, and shut the
system down cleanly.

With the default IPsec (Internet Protocol Security) ifup script
configuration, the racoon IKE key management daemon used aggressive IKE
mode instead of main IKE mode. This resulted in the preshared key (PSK)
hash being sent unencrypted, which could make it easier for an attacker
able to sniff network traffic to obtain the plain text PSK from a
transmitted hash. (CVE-2008-1198)

Red Hat would like to thank Aleksander Adamowski for reporting this issue.

This update also fixes the following bugs:

* Prior to this update, the DHCPv6 client was not terminated when the
network service was stopped. This update modifies the source so that the
client is now terminated when stopping the network service. (BZ#568896)

* Prior to this update, on some systems the rm command failed and reported
the error message "rm: cannot remove directory `/var/run/dovecot/login/':
Is a directory" during system boot. This update modifies the source so that
this error message no longer appears. (BZ#679998)

* Prior to this update, the netconsole script could not discover and
resolve the MAC address of the router specified in the
/etc/sysconfig/netconsole file. This update modifies the netconsole script
so that the script no longer fails when the arping tool returns the MAC
address of the router more than once. (BZ#744734)

* Prior to this update, the arp_ip_target was, due to a logic error, not
correctly removed via sysfs. As a consequence, the error "ifdown-eth: line
64: echo: write error: Invalid argument" was reported when attempting to
shut down a bonding device. This update modifies the script so that the
error no longer appears and arp_ip_target is now correctly removed.
(BZ#745681)

All users of initscripts are advised to upgrade to this updated package,
which fixes these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2008-1198.html">CVE-2008-1198</cve>
        <bugzilla href="http://bugzilla.redhat.com/435274" id="435274">CVE-2008-1198 IPSec ifup script allows for aggressive IKE mode</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/679998" id="679998">[REG][5.6] rm command reports an error message during system booting.</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120312002" comment="initscripts is earlier than 0:8.45.42-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120312003" comment="initscripts is signed with Red Hat redhatrelease key" />
 
</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120313" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0313: samba security, bug fix, and enhancement update (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0313-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0313.html" />
      <reference source="CVE" ref_id="CVE-2010-0926" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-0926.html" />
    <description>Samba is an open-source implementation of the Server Message Block (SMB) or
Common Internet File System (CIFS) protocol, which allows PC-compatible
machines to share files, printers, and other information.

The default Samba server configuration enabled both the "wide links" and
"unix extensions" options, allowing Samba clients with write access to a
share to create symbolic links that point to any location on the file
system. Clients connecting with CIFS UNIX extensions disabled could have
such links resolved on the server, allowing them to access and possibly
overwrite files outside of the share. With this update, "wide links" is
set to "no" by default. In addition, the update ensures "wide links" is
disabled for shares that have "unix extensions" enabled. (CVE-2010-0926)

Warning: This update may cause files and directories that are only linked
to Samba shares using symbolic links to become inaccessible to Samba
clients. In deployments where support for CIFS UNIX extensions is not
needed (such as when files are exported to Microsoft Windows clients),
administrators may prefer to set the "unix extensions" option to "no" to
allow the use of symbolic links to access files out of the shared
directories. All existing symbolic links in a share should be reviewed
before re-enabling "wide links".

These updated samba packages also fix the following bug:

* The smbclient tool sometimes failed to return the proper exit status
code. Consequently, using smbclient in a script caused some scripts to
fail. With this update, an upstream patch has been applied and smbclient
now returns the correct exit status. (BZ#768908)

In addition, these updated samba packages provide the following
enhancement:

* With this update, support for Windows Server 2008 R2 domains has been
added. (BZ#736124)

Users are advised to upgrade to these updated samba packages, which correct
these issues and add this enhancement. After installing this update, the
smb service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-0926.html">CVE-2010-0926</cve>
        <bugzilla href="http://bugzilla.redhat.com/562568" id="562568">CVE-2010-0926 samba: insecure "wide links" default</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120313012" comment="libsmbclient is earlier than 0:3.0.33-3.37.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313013" comment="libsmbclient is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120313002" comment="samba is earlier than 0:3.0.33-3.37.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313003" comment="samba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120313004" comment="samba-swat is earlier than 0:3.0.33-3.37.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313005" comment="samba-swat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120313008" comment="samba-client is earlier than 0:3.0.33-3.37.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313009" comment="samba-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120313010" comment="samba-common is earlier than 0:3.0.33-3.37.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313011" comment="samba-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120313006" comment="libsmbclient-devel is earlier than 0:3.0.33-3.37.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313007" comment="libsmbclient-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120317" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0317: libpng security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0317-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0317.html" />
      <reference source="CVE" ref_id="CVE-2011-3026" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3026.html" />
    <description>The libpng packages contain a library of functions for creating and
manipulating PNG (Portable Network Graphics) image format files.

A heap-based buffer overflow flaw was found in libpng. An attacker could
create a specially-crafted PNG image that, when opened, could cause an
application using libpng to crash or, possibly, execute arbitrary code with
the privileges of the user running the application. (CVE-2011-3026)

Users of libpng and libpng10 should upgrade to these updated packages,
which contain a backported patch to correct this issue. All running
applications using libpng or libpng10 must be restarted for the update to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-20" />
        <updated date="2012-02-20" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3026.html">CVE-2011-3026</cve>
        <bugzilla href="http://bugzilla.redhat.com/790737" id="790737">CVE-2011-3026 libpng: Heap-buffer-overflow in png_decompress_chunk (MFSA 2012-11)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317007" comment="libpng-devel is earlier than 2:1.2.46-2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317008" comment="libpng-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317005" comment="libpng is earlier than 2:1.2.46-2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317006" comment="libpng is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317009" comment="libpng-static is earlier than 2:1.2.46-2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317010" comment="libpng-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317014" comment="libpng-devel is earlier than 2:1.2.7-9.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317015" comment="libpng-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317012" comment="libpng is earlier than 2:1.2.7-9.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317013" comment="libpng is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317018" comment="libpng10-devel is earlier than 0:1.0.16-10.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317019" comment="libpng10-devel is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317016" comment="libpng10 is earlier than 0:1.0.16-10.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317017" comment="libpng10 is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317023" comment="libpng-devel is earlier than 2:1.2.10-15.el5_7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317024" comment="libpng-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120317021" comment="libpng is earlier than 2:1.2.10-15.el5_7" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317022" comment="libpng is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120321" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0321: cvs security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0321-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0321.html" />
      <reference source="CVE" ref_id="CVE-2012-0804" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0804.html" />
    <description>Concurrent Version System (CVS) is a version control system that can record
the history of your files.

A heap-based buffer overflow flaw was found in the way the CVS client
handled responses from HTTP proxies. A malicious HTTP proxy could use this
flaw to cause the CVS client to crash or, possibly, execute arbitrary code
with the privileges of the user running the CVS client. (CVE-2012-0804)

All users of cvs are advised to upgrade to these updated packages, which
contain a patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0804.html">CVE-2012-0804</cve>
        <bugzilla href="http://bugzilla.redhat.com/784141" id="784141">CVE-2012-0804 cvs: client proxy_connect heap-based buffer overflow</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120321004" comment="cvs-inetd is earlier than 0:1.11.22-11.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120321005" comment="cvs-inetd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120321002" comment="cvs is earlier than 0:1.11.22-11.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120321003" comment="cvs is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120321010" comment="cvs is earlier than 0:1.11.23-11.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120321011" comment="cvs is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120322" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0322: java-1.6.0-openjdk security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0322-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0322.html" />
      <reference source="CVE" ref_id="CVE-2011-3563" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3563.html" />
      <reference source="CVE" ref_id="CVE-2011-3571" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3571.html" />
      <reference source="CVE" ref_id="CVE-2011-5035" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-5035.html" />
      <reference source="CVE" ref_id="CVE-2012-0497" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0497.html" />
      <reference source="CVE" ref_id="CVE-2012-0501" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0501.html" />
      <reference source="CVE" ref_id="CVE-2012-0502" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0502.html" />
      <reference source="CVE" ref_id="CVE-2012-0503" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0503.html" />
      <reference source="CVE" ref_id="CVE-2012-0505" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0505.html" />
      <reference source="CVE" ref_id="CVE-2012-0506" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0506.html" />
      <reference source="CVE" ref_id="CVE-2012-0507" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0507.html" />
    <description>These packages provide the OpenJDK 6 Java Runtime Environment and the
OpenJDK 6 Software Development Kit.

It was discovered that Java2D did not properly check graphics rendering
objects before passing them to the native renderer. Malicious input, or an
untrusted Java application or applet could use this flaw to crash the Java
Virtual Machine (JVM), or bypass Java sandbox restrictions. (CVE-2012-0497)

It was discovered that the exception thrown on deserialization failure did
not always contain a proper identification of the cause of the failure. An
untrusted Java application or applet could use this flaw to bypass Java
sandbox restrictions. (CVE-2012-0505)

The AtomicReferenceArray class implementation did not properly check if
the array was of the expected Object[] type. A malicious Java application
or applet could use this flaw to bypass Java sandbox restrictions.
(CVE-2011-3571)

It was discovered that the use of TimeZone.setDefault() was not restricted
by the SecurityManager, allowing an untrusted Java application or applet to
set a new default time zone, and hence bypass Java sandbox restrictions.
(CVE-2012-0503)

The HttpServer class did not limit the number of headers read from HTTP
requests. A remote attacker could use this flaw to make an application
using HttpServer use an excessive amount of CPU time via a
specially-crafted request. This update introduces a header count limit
controlled using the sun.net.httpserver.maxReqHeaders property. The default
value is 200. (CVE-2011-5035)

The Java Sound component did not properly check buffer boundaries.
Malicious input, or an untrusted Java application or applet could use this
flaw to cause the Java Virtual Machine (JVM) to crash or disclose a portion
of its memory. (CVE-2011-3563)

A flaw was found in the AWT KeyboardFocusManager that could allow an
untrusted Java application or applet to acquire keyboard focus and possibly
steal sensitive information. (CVE-2012-0502)

It was discovered that the CORBA (Common Object Request Broker
Architecture) implementation in Java did not properly protect repository
identifiers on certain CORBA objects. This could have been used to modify
immutable object data. (CVE-2012-0506)

An off-by-one flaw, causing a stack overflow, was found in the unpacker for
ZIP files. A specially-crafted ZIP archive could cause the Java Virtual
Machine (JVM) to crash when opened. (CVE-2012-0501)

This erratum also upgrades the OpenJDK package to IcedTea6 1.10.6. Refer to
the NEWS file, linked to in the References, for further information.

All users of java-1.6.0-openjdk are advised to upgrade to these updated
packages, which resolve these issues. All running instances of OpenJDK Java
must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3563.html">CVE-2011-3563</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3571.html">CVE-2011-3571</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-5035.html">CVE-2011-5035</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0497.html">CVE-2012-0497</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0501.html">CVE-2012-0501</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0502.html">CVE-2012-0502</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0503.html">CVE-2012-0503</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0505.html">CVE-2012-0505</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0506.html">CVE-2012-0506</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0507.html">CVE-2012-0507</cve>
        <bugzilla href="http://bugzilla.redhat.com/788606" id="788606">CVE-2011-5035 OpenJDK: HttpServer no header count limit (Lightweight HTTP Server, 7126960)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788624" id="788624">CVE-2012-0501 OpenJDK: off-by-one bug in ZIP reading code (JRE, 7118283)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788976" id="788976">CVE-2012-0503 OpenJDK: unrestricted use of TimeZone.setDefault() (i18n, 7110687)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788994" id="788994">CVE-2012-0507 OpenJDK: AtomicReferenceArray insufficient array type check (Concurrency, 7082299)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789295" id="789295">CVE-2011-3563 OpenJDK: JavaSound incorrect bounds check (Sound, 7088367)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789297" id="789297">CVE-2012-0502 OpenJDK: KeyboardFocusManager focus stealing (AWT, 7110683)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789299" id="789299">CVE-2012-0505 OpenJDK: incomplete info in the deserialization exception (Serialization, 7110700)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789300" id="789300">CVE-2012-0506 OpenJDK: mutable repository identifiers (CORBA, 7110704)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789301" id="789301">CVE-2012-0497 OpenJDK: insufficient checking of the graphics rendering object (2D, 7112642)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120322010" comment="java-1.6.0-openjdk-demo is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120322011" comment="java-1.6.0-openjdk-demo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120322002" comment="java-1.6.0-openjdk is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120322003" comment="java-1.6.0-openjdk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120322006" comment="java-1.6.0-openjdk-src is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120322007" comment="java-1.6.0-openjdk-src is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120322004" comment="java-1.6.0-openjdk-devel is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120322005" comment="java-1.6.0-openjdk-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120322008" comment="java-1.6.0-openjdk-javadoc is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120322009" comment="java-1.6.0-openjdk-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120323" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0323: httpd security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0323-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0323.html" />
      <reference source="CVE" ref_id="CVE-2011-3607" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3607.html" />
      <reference source="CVE" ref_id="CVE-2011-3639" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3639.html" />
      <reference source="CVE" ref_id="CVE-2012-0031" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0031.html" />
      <reference source="CVE" ref_id="CVE-2012-0053" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0053.html" />
    <description>The Apache HTTP Server is a popular web server.

It was discovered that the fix for CVE-2011-3368 (released via
RHSA-2011:1392) did not completely address the problem. An attacker could
bypass the fix and make a reverse proxy connect to an arbitrary server not
directly accessible to the attacker by sending an HTTP version 0.9 request.
(CVE-2011-3639)

The httpd server included the full HTTP header line in the default error
page generated when receiving an excessively long or malformed header.
Malicious JavaScript running in the server's domain context could use this
flaw to gain access to httpOnly cookies. (CVE-2012-0053)

An integer overflow flaw, leading to a heap-based buffer overflow, was
found in the way httpd performed substitutions in regular expressions. An
attacker able to set certain httpd settings, such as a user permitted to
override the httpd configuration for a specific directory using a
".htaccess" file, could use this flaw to crash the httpd child process or,
possibly, execute arbitrary code with the privileges of the "apache" user.
(CVE-2011-3607)

A flaw was found in the way httpd handled child process status information.
A malicious program running with httpd child process privileges (such as a
PHP or CGI script) could use this flaw to cause the parent httpd process to
crash during httpd service shutdown. (CVE-2012-0031)

All httpd users should upgrade to these updated packages, which contain
backported patches to correct these issues. After installing the updated
packages, the httpd daemon will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3607.html">CVE-2011-3607</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3639.html">CVE-2011-3639</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0031.html">CVE-2012-0031</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0053.html">CVE-2012-0053</cve>
        <bugzilla href="http://bugzilla.redhat.com/752080" id="752080">CVE-2011-3639 httpd: http 0.9 request bypass of the reverse proxy vulnerability CVE-2011-3368 fix</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/769844" id="769844">CVE-2011-3607 httpd: ap_pregsub Integer overflow to buffer overflow</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/773744" id="773744">CVE-2012-0031 httpd: possible crash on shutdown due to flaw in scoreboard handling</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/785069" id="785069">CVE-2012-0053 httpd: cookie exposure due to error responses</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120323004" comment="httpd-manual is earlier than 0:2.2.3-63.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120323005" comment="httpd-manual is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120323006" comment="httpd-devel is earlier than 0:2.2.3-63.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120323007" comment="httpd-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120323002" comment="httpd is earlier than 0:2.2.3-63.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120323003" comment="httpd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120323008" comment="mod_ssl is earlier than 0:2.2.3-63.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120323009" comment="mod_ssl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120324" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0324: libxml2 security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0324-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0324.html" />
      <reference source="CVE" ref_id="CVE-2012-0841" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0841.html" />
    <description>The libxml2 library is a development toolbox providing the implementation
of various XML standards.

It was found that the hashing routine used by libxml2 arrays was
susceptible to predictable hash collisions. Sending a specially-crafted
message to an XML service could result in longer processing time, which
could lead to a denial of service. To mitigate this issue, randomization
has been added to the hashing function to reduce the chance of an attacker
successfully causing intentional collisions. (CVE-2012-0841)

All users of libxml2 are advised to upgrade to these updated packages,
which contain a backported patch to correct this issue. The desktop must
be restarted (log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-21" />
        <updated date="2012-02-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0841.html">CVE-2012-0841</cve>
        <bugzilla href="http://bugzilla.redhat.com/787067" id="787067">CVE-2012-0841 libxml2: hash table collisions CPU usage DoS</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120324004" comment="libxml2-python is earlier than 0:2.6.26-2.1.15.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120017007" comment="libxml2-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120324002" comment="libxml2 is earlier than 0:2.6.26-2.1.15.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120017003" comment="libxml2 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120324006" comment="libxml2-devel is earlier than 0:2.6.26-2.1.15.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120017005" comment="libxml2-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120324018" comment="libxml2-python is earlier than 0:2.7.6-4.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120018008" comment="libxml2-python is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120324014" comment="libxml2-static is earlier than 0:2.7.6-4.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120018012" comment="libxml2-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120324012" comment="libxml2 is earlier than 0:2.7.6-4.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120018006" comment="libxml2 is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120324016" comment="libxml2-devel is earlier than 0:2.7.6-4.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120018010" comment="libxml2-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120332" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0332: samba security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0332-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0332.html" />
      <reference source="CVE" ref_id="CVE-2012-0870" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0870.html" />
    <description>Samba is a suite of programs used by machines to share files, printers, and
other information.

An input validation flaw was found in the way Samba handled Any Batched
(AndX) requests. A remote, unauthenticated attacker could send a
specially-crafted SMB packet to the Samba server, possibly resulting in
arbitrary code execution with the privileges of the Samba server (root).
(CVE-2012-0870)

Red Hat would like to thank the Samba team for reporting this issue.
Upstream acknowledges Andy Davis of NGS Secure as the original reporter.

Users of Samba are advised to upgrade to these updated packages, which
contain a backported patch to resolve this issue. After installing this
update, the smb service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-02-23" />
        <updated date="2012-02-23" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0870.html">CVE-2012-0870</cve>
        <bugzilla href="http://bugzilla.redhat.com/795509" id="795509">CVE-2012-0870 samba: Any Batched ("AndX") request processing infinite recursion and heap-based buffer overflow</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        <cpe>cpe:/o:redhat:rhel_aus</cpe>
        <cpe>cpe:/o:redhat:rhel_eus</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332004" comment="libsmbclient is earlier than 0:3.0.33-3.38.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313013" comment="libsmbclient is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332002" comment="samba is earlier than 0:3.0.33-3.38.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313003" comment="samba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332012" comment="samba-swat is earlier than 0:3.0.33-3.38.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313005" comment="samba-swat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332008" comment="samba-client is earlier than 0:3.0.33-3.38.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313009" comment="samba-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332006" comment="samba-common is earlier than 0:3.0.33-3.38.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313011" comment="samba-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332010" comment="libsmbclient-devel is earlier than 0:3.0.33-3.38.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313007" comment="libsmbclient-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332015" comment="samba is earlier than 0:3.0.33-0.35.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120332016" comment="samba is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332019" comment="samba-swat is earlier than 0:3.0.33-0.35.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120332020" comment="samba-swat is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332021" comment="samba-client is earlier than 0:3.0.33-0.35.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120332022" comment="samba-client is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120332017" comment="samba-common is earlier than 0:3.0.33-0.35.el4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120332018" comment="samba-common is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120349" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0349: Red Hat Enterprise Linux 4 - Transition to Extended Life Phase Notice (Low)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 4</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0349-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0349.html" />
    <description>On March 01, 2012, all Red Hat Enterprise Linux 4-based products listed
below transition from the Production Phase to the Extended Life Phase:

Red Hat Enterprise Linux AS 4
Red Hat Enterprise Linux ES 4
Red Hat Enterprise Linux WS 4
Red Hat Desktop 4
Red Hat Global File System 4
Red Hat Cluster Suite 4

Red Hat offers support and services for each major release of Red Hat
Enterprise Linux throughout four phases – Production 1, 2, and 3, and
Extended Life Phase. For Red Hat Enterprise Linux 4, the Production Phase
spans seven years, followed by a three-year Extended Life Phase. Together,
these four phases constitute the "life cycle". The specific support and
services provided during each phase is described in detail at:
http://redhat.com/rhel/lifecycle

On March 01, 2012, Red Hat Enterprise Linux 4 systems continue to be
subscribed to Red Hat Enterprise Linux 4 channels on Red Hat Network
(RHN), continue to require a Red Hat Enterprise Linux entitlement, and
continue to have access to:

* Limited technical support for existing Red Hat Enterprise Linux 4
  deployments (for customers with Basic, Premium, or Standard support).

* Previously released bug fixes (RHBAs), security errata (RHSAs), and
  product enhancements (RHEAs) via RHN. Software maintenance (new bug fix
  and security errata) are no longer provided for the Red Hat Enterprise
  Linux 4 product family.

* Red Hat Knowledgebase and other content (white papers, reference
  architectures, etc.) found in the Red Hat Customer Portal.

* Red Hat Enterprise Linux 4 documentation.

Please also note that new bug fix, security, or product enhancements
advisories (RHBAs, RHSAs, and RHEAs) are no longer provided for the Red
Hat Enterprise Linux 4 Add-Ons after March 01.

After March 01, you have several options. Your Red Hat subscription gives
you continuous access to all active versions of the Red Hat software in
both binary and source form, including all security updates and bug fixes.
As Red Hat Enterprise Linux 4 transitions out of the Production Phase, we
strongly recommend that you take full advantage of your subscription
services and upgrade to Red Hat Enterprise Linux 5 or 6, which contain
compelling new features and enablement for modern hardware platforms and
ISV applications.

If you must remain on Red Hat Enterprise Linux 4, we recommend that you
add the Red Hat Enterprise Linux Extended Life Cycle Support (ELS) Add-On
subscription to your current Red Hat Enterprise Linux subscription. The
ELS Add-On complements your Red Hat Enterprise Linux subscription and
provides software maintenance services not otherwise available in the
Extended Life Phase. Customers who purchase the ELS Add-On continue to
receive software maintenance (critical impact security and urgent priority
bug fixes) and technical support as provided in the Production 3 Phase.
ELS is available for up to three years and requires that you have an
existing Red Hat Enterprise Linux subscription with equivalent
subscription terms and support level.

For more information on the Red Hat Enterprise Linux ELS Add-On, visit:
http://www.redhat.com/products/enterprise-linux-add-ons/extended-lifecycle-support/</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Low</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-01" />
        <updated date="2012-03-01" />
        <bugzilla href="http://bugzilla.redhat.com/786375" id="786375">Send Out RHEL 4 Transition to Extended Life Phase Notice</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120016001" comment="Red Hat Enterprise Linux 4 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120349002" comment="redhat-release is earlier than 0:4Desktop-10.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120073003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120349004" comment="redhat-release is earlier than 0:4WS-10.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120073003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120349005" comment="redhat-release is earlier than 0:4ES-10.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120073003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120349006" comment="redhat-release is earlier than 0:4AS-10.10" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120073003" comment="redhat-release is signed with Red Hat master key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120350" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0350: kernel security and bug fix update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0350-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0350.html" />
      <reference source="CVE" ref_id="CVE-2011-4077" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4077.html" />
      <reference source="CVE" ref_id="CVE-2011-4081" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4081.html" />
      <reference source="CVE" ref_id="CVE-2011-4132" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4132.html" />
      <reference source="CVE" ref_id="CVE-2011-4347" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4347.html" />
      <reference source="CVE" ref_id="CVE-2011-4594" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4594.html" />
      <reference source="CVE" ref_id="CVE-2011-4611" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4611.html" />
      <reference source="CVE" ref_id="CVE-2011-4622" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4622.html" />
      <reference source="CVE" ref_id="CVE-2012-0038" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0038.html" />
      <reference source="CVE" ref_id="CVE-2012-0045" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0045.html" />
      <reference source="CVE" ref_id="CVE-2012-0207" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0207.html" />
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* A buffer overflow flaw was found in the way the Linux kernel's XFS file
system implementation handled links with overly long path names. A local,
unprivileged user could use this flaw to cause a denial of service or
escalate their privileges by mounting a specially-crafted disk.
(CVE-2011-4077, Moderate)

* Flaws in ghash_update() and ghash_final() could allow a local,
unprivileged user to cause a denial of service. (CVE-2011-4081, Moderate)

* A flaw was found in the Linux kernel's Journaling Block Device (JBD). A
local, unprivileged user could use this flaw to crash the system by
mounting a specially-crafted ext3 or ext4 disk. (CVE-2011-4132, Moderate)

* It was found that the kvm_vm_ioctl_assign_device() function in the KVM
(Kernel-based Virtual Machine) subsystem of a Linux kernel did not check if
the user requesting device assignment was privileged or not. A local,
unprivileged user on the host could assign unused PCI devices, or even
devices that were in use and whose resources were not properly claimed by
the respective drivers, which could result in the host crashing.
(CVE-2011-4347, Moderate)

* Two flaws were found in the way the Linux kernel's __sys_sendmsg()
function, when invoked via the sendmmsg() system call, accessed user-space
memory. A local, unprivileged user could use these flaws to cause a denial
of service. (CVE-2011-4594, Moderate)

* The RHSA-2011:1530 kernel update introduced an integer overflow flaw in
the Linux kernel. On PowerPC systems, a local, unprivileged user could use
this flaw to cause a denial of service. (CVE-2011-4611, Moderate)

* A flaw was found in the way the KVM subsystem of a Linux kernel handled
PIT (Programmable Interval Timer) IRQs (interrupt requests) when there was
no virtual interrupt controller set up. A local, unprivileged user on the
host could force this situation to occur, resulting in the host crashing.
(CVE-2011-4622, Moderate)

* A flaw was found in the way the Linux kernel's XFS file system
implementation handled on-disk Access Control Lists (ACLs). A local,
unprivileged user could use this flaw to cause a denial of service or
escalate their privileges by mounting a specially-crafted disk.
(CVE-2012-0038, Moderate)

* A flaw was found in the way the Linux kernel's KVM hypervisor
implementation emulated the syscall instruction for 32-bit guests. An
unprivileged guest user could trigger this flaw to crash the guest.
(CVE-2012-0045, Moderate)

* A divide-by-zero flaw was found in the Linux kernel's igmp_heard_query()
function. An attacker able to send certain IGMP (Internet Group Management
Protocol) packets to a target system could use this flaw to cause a denial
of service. (CVE-2012-0207, Moderate)

Red Hat would like to thank Nick Bowler for reporting CVE-2011-4081; Sasha
Levin for reporting CVE-2011-4347; Tetsuo Handa for reporting
CVE-2011-4594; Maynard Johnson for reporting CVE-2011-4611; Wang Xi for
reporting CVE-2012-0038; Stephan Bärwolf for reporting CVE-2012-0045; and
Simon McVittie for reporting CVE-2012-0207. Upstream acknowledges Mathieu
Desnoyers as the original reporter of CVE-2011-4594.

This update also fixes several bugs. Documentation for these changes will
be available shortly from the Technical Notes document linked to in the
References section.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues, and fix the bugs noted in the Technical
Notes. The system must be rebooted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-06" />
        <updated date="2012-03-06" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4077.html">CVE-2011-4077</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4081.html">CVE-2011-4081</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4132.html">CVE-2011-4132</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4347.html">CVE-2011-4347</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4594.html">CVE-2011-4594</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4611.html">CVE-2011-4611</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4622.html">CVE-2011-4622</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0038.html">CVE-2012-0038</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0045.html">CVE-2012-0045</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0207.html">CVE-2012-0207</cve>
        <bugzilla href="http://bugzilla.redhat.com/749156" id="749156">CVE-2011-4077 kernel: xfs: potential buffer overflow in xfs_readlink()</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/749475" id="749475">CVE-2011-4081 kernel: crypto: ghash: null pointer deref if no key is set</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/753341" id="753341">CVE-2011-4132 kernel: jbd/jbd2: invalid value of first log block leads to oops</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/756084" id="756084">CVE-2011-4347 kernel: kvm: device assignment DoS</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/761646" id="761646">CVE-2011-4594 kernel: send(m)msg: user pointer dereferences</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/767914" id="767914">CVE-2011-4611 kernel: perf, powerpc: Handle events that raise an exception without overflowing</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/769721" id="769721">CVE-2011-4622 kernel: kvm: pit timer with no irqchip crashes the system</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/772867" id="772867">CVE-2012-0207 kernel: igmp: Avoid zero delay when receiving odd mixture of IGMP queries</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/773280" id="773280">CVE-2012-0038 kernel: xfs heap overflow</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/773370" id="773370">CVE-2012-0045 kernel: kvm: syscall instruction induced guest panic</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789058" id="789058">cifs: i/o error on copying file > 102336 bytes [rhel-6.2.z]</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350013" comment="kernel-debug is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052020" comment="kernel-debug is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350017" comment="kernel-devel is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052016" comment="kernel-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350011" comment="kernel-debug-devel is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052018" comment="kernel-debug-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350025" comment="kernel-firmware is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052026" comment="kernel-firmware is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350023" comment="kernel-kdump is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052022" comment="kernel-kdump is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350021" comment="kernel-kdump-devel is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052024" comment="kernel-kdump-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350009" comment="kernel-bootwrapper is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052008" comment="kernel-bootwrapper is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350007" comment="kernel-headers is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052010" comment="kernel-headers is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350027" comment="kernel-doc is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052028" comment="kernel-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350019" comment="python-perf is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052014" comment="python-perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350015" comment="perf is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052012" comment="perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120350005" comment="kernel is earlier than 0:2.6.32-220.7.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052006" comment="kernel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120359" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0359: flash-plugin security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0359-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0359.html" />
      <reference source="CVE" ref_id="CVE-2012-0768" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0768.html" />
      <reference source="CVE" ref_id="CVE-2012-0769" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0769.html" />
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes two vulnerabilities in Adobe Flash Player. These
vulnerabilities are detailed on the Adobe security page APSB12-05, listed
in the References section.

A flaw was found in the way flash-plugin displayed certain SWF content. An
attacker could use this flaw to create a specially-crafted SWF file that
would cause flash-plugin to crash or, potentially, execute arbitrary code
when the victim loaded a page containing the specially-crafted SWF content.
(CVE-2012-0768)

A flaw in flash-plugin could allow an attacker to obtain sensitive
information if a victim were tricked into visiting a specially-crafted web
page. (CVE-2012-0769)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.3.183.16.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-06" />
        <updated date="2012-03-06" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0768.html">CVE-2012-0768</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0769.html">CVE-2012-0769</cve>
        <bugzilla href="http://bugzilla.redhat.com/800160" id="800160">CVE-2012-0768 flash-plugin: code execution flaw (APSB12-05)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800182" id="800182">CVE-2012-0769 flash-plugin: information disclosure flaw (APSB12-05)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120359002" comment="flash-plugin is earlier than 0:10.3.183.16-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120359003" comment="flash-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120359008" comment="flash-plugin is earlier than 0:10.3.183.16-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120144006" comment="flash-plugin is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120369" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0369: python-sqlalchemy security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0369-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0369.html" />
      <reference source="CVE" ref_id="CVE-2012-0805" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0805.html" />
    <description>SQLAlchemy is an Object Relational Mapper (ORM) that provides a flexible,
high-level interface to SQL databases.

It was discovered that SQLAlchemy did not sanitize values for the limit and
offset keywords for SQL select statements. If an application using
SQLAlchemy accepted values for these keywords, and did not filter or
sanitize them before passing them to SQLAlchemy, it could allow an attacker
to perform an SQL injection attack against the application. (CVE-2012-0805)

All users of python-sqlalchemy are advised to upgrade to this updated
package, which contains a patch to correct this issue. All running
applications using SQLAlchemy must be restarted for this update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-07" />
        <updated date="2012-03-07" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0805.html">CVE-2012-0805</cve>
        <bugzilla href="http://bugzilla.redhat.com/783305" id="783305">CVE-2012-0805 python-sqlalchemy: SQL injection flaw due to not checking LIMIT input for correct type</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120369005" comment="python-sqlalchemy is earlier than 0:0.5.5-3.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120369006" comment="python-sqlalchemy is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120370" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0370: xen security and bug fix update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0370-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0370.html" />
      <reference source="CVE" ref_id="CVE-2012-0029" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0029.html" />
    <description>The xen packages contain administration tools and the xend service for
managing the kernel-xen kernel for virtualization on Red Hat Enterprise
Linux.

A heap overflow flaw was found in the way QEMU emulated the e1000 network
interface card. A privileged guest user in a virtual machine whose network
interface is configured to use the e1000 emulated driver could use this
flaw to crash QEMU or, possibly, escalate their privileges on the host.
(CVE-2012-0029)

Red Hat would like to thank Nicolae Mogoreanu for reporting this issue.

This update also fixes the following bugs:

* Adding support for jumbo frames introduced incorrect network device
expansion when a bridge is created. The expansion worked correctly with the
default configuration, but could have caused network setup failures when a
user-defined network script was used. This update changes the expansion so
network setup will not fail, even when a user-defined network script is
used. (BZ#797191)

* A bug was found in xenconsoled, the Xen hypervisor console daemon. If
timestamp logging for this daemon was enabled (using both the
XENCONSOLED_TIMESTAMP_HYPERVISOR_LOG and XENCONSOLED_TIMESTAMP_GUEST_LOG
options in "/etc/sysconfig/xend"), xenconsoled could crash if the guest
emitted a lot of information to its serial console in a short period of
time. Eventually, the guest would freeze after the console buffer was
filled due to the crashed xenconsoled. Timestamp logging is disabled by
default. (BZ#797836)

All xen users are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. The system must be
rebooted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-07" />
        <updated date="2012-03-07" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0029.html">CVE-2012-0029</cve>
        <bugzilla href="http://bugzilla.redhat.com/772075" id="772075">CVE-2012-0029 qemu: e1000: process_tx_desc legacy mode packets heap overflow</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/797191" id="797191">xen-network-common.sh scripting typo</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120370002" comment="xen is earlier than 0:3.0.3-135.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120370003" comment="xen is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120370006" comment="xen-devel is earlier than 0:3.0.3-135.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120370007" comment="xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120370004" comment="xen-libs is earlier than 0:3.0.3-135.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120370005" comment="xen-libs is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120376" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0376: systemtap security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0376-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0376.html" />
      <reference source="CVE" ref_id="CVE-2012-0875" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0875.html" />
    <description>SystemTap is an instrumentation system for systems running the Linux
kernel. The system allows developers to write scripts to collect data on
the operation of the system.

An invalid pointer read flaw was found in the way SystemTap handled
malformed debugging information in DWARF format. When SystemTap
unprivileged mode was enabled, an unprivileged user in the stapusr group
could use this flaw to crash the system or, potentially, read arbitrary
kernel memory. Additionally, a privileged user (root, or a member of the
stapdev group) could trigger this flaw when tricked into instrumenting a
specially-crafted ELF binary, even when unprivileged mode was not enabled.
(CVE-2012-0875)

SystemTap users should upgrade to these updated packages, which contain a
backported patch to correct this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-08" />
        <updated date="2012-03-08" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0875.html">CVE-2012-0875</cve>
        <bugzilla href="http://bugzilla.redhat.com/795913" id="795913">CVE-2012-0875 systemtap: kernel panic when processing malformed DWARF unwind data</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376006" comment="systemtap-runtime is earlier than 0:1.6-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376007" comment="systemtap-runtime is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376008" comment="systemtap-initscript is earlier than 0:1.6-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376009" comment="systemtap-initscript is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376012" comment="systemtap-sdt-devel is earlier than 0:1.6-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376013" comment="systemtap-sdt-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376010" comment="systemtap-server is earlier than 0:1.6-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376011" comment="systemtap-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376002" comment="systemtap is earlier than 0:1.6-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376003" comment="systemtap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376004" comment="systemtap-testsuite is earlier than 0:1.6-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376005" comment="systemtap-testsuite is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376020" comment="systemtap-runtime is earlier than 0:1.6-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376021" comment="systemtap-runtime is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376022" comment="systemtap-initscript is earlier than 0:1.6-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376023" comment="systemtap-initscript is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376030" comment="systemtap-sdt-devel is earlier than 0:1.6-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376031" comment="systemtap-sdt-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376026" comment="systemtap-server is earlier than 0:1.6-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376027" comment="systemtap-server is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376018" comment="systemtap is earlier than 0:1.6-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376019" comment="systemtap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376024" comment="systemtap-grapher is earlier than 0:1.6-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376025" comment="systemtap-grapher is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120376028" comment="systemtap-testsuite is earlier than 0:1.6-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120376029" comment="systemtap-testsuite is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120387" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0387: firefox security and bug fix update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0387-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0387.html" />
      <reference source="CVE" ref_id="CVE-2012-0451" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0451.html" />
      <reference source="CVE" ref_id="CVE-2012-0455" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0455.html" />
      <reference source="CVE" ref_id="CVE-2012-0456" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0456.html" />
      <reference source="CVE" ref_id="CVE-2012-0457" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0457.html" />
      <reference source="CVE" ref_id="CVE-2012-0458" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0458.html" />
      <reference source="CVE" ref_id="CVE-2012-0459" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0459.html" />
      <reference source="CVE" ref_id="CVE-2012-0460" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0460.html" />
      <reference source="CVE" ref_id="CVE-2012-0461" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0461.html" />
      <reference source="CVE" ref_id="CVE-2012-0462" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0462.html" />
      <reference source="CVE" ref_id="CVE-2012-0464" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0464.html" />
    <description>Mozilla Firefox is an open source web browser.

Several flaws were found in the processing of malformed web content. A web
page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user
running Firefox. (CVE-2012-0461, CVE-2012-0462, CVE-2012-0464)

Two flaws were found in the way Firefox parsed certain Scalable Vector
Graphics (SVG) image files. A web page containing a malicious SVG image
file could cause an information leak, or cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2012-0456, CVE-2012-0457)

A flaw could allow a malicious site to bypass intended restrictions,
possibly leading to a cross-site scripting (XSS) attack if a user were
tricked into dropping a "javascript:" link onto a frame. (CVE-2012-0455)

It was found that the home page could be set to a "javascript:" link. If a
user were tricked into setting such a home page by dragging a link to the
home button, it could cause Firefox to repeatedly crash, eventually
leading to arbitrary code execution with the privileges of the user
running Firefox. (CVE-2012-0458)

A flaw was found in the way Firefox parsed certain web content containing
"cssText". A web page containing malicious content could cause Firefox to
crash or, potentially, execute arbitrary code with the privileges of the
user running Firefox. (CVE-2012-0459)

It was found that by using the DOM fullscreen API, untrusted content could
bypass the mozRequestFullscreen security protections. A web page containing
malicious web content could exploit this API flaw to cause user interface
spoofing. (CVE-2012-0460)

A flaw was found in the way Firefox handled pages with multiple Content
Security Policy (CSP) headers. This could lead to a cross-site scripting
attack if used in conjunction with a website that has a header injection
flaw. (CVE-2012-0451)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 10.0.3 ESR. You can find a link to the Mozilla
advisories in the References section of this erratum.

This update also fixes the following bugs:

* When using the Traditional Chinese locale (zh-TW), a segmentation fault
sometimes occurred when closing Firefox. (BZ#729632)

* Inputting any text in the Web Console (Tools -> Web Developer ->
Web Console) caused Firefox to crash. (BZ#784048)

* The java-1.6.0-ibm-plugin and java-1.6.0-sun-plugin packages require the
"/usr/lib/mozilla/plugins/" directory on 32-bit systems, and the
"/usr/lib64/mozilla/plugins/" directory on 64-bit systems. These
directories are created by the xulrunner package; however, they were
missing from the xulrunner package provided by the RHEA-2012:0327 update.
Therefore, upgrading to RHEA-2012:0327 removed those directories, causing
dependency errors when attempting to install the java-1.6.0-ibm-plugin or
java-1.6.0-sun-plugin package. With this update, xulrunner once again
creates the plugins directory. This issue did not affect users of Red Hat
Enterprise Linux 6. (BZ#799042)

All Firefox users should upgrade to these updated packages, which contain
Firefox version 10.0.3 ESR, which corrects these issues. After installing
the update, Firefox must be restarted for the changes to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-14" />
        <updated date="2012-03-14" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0451.html">CVE-2012-0451</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0455.html">CVE-2012-0455</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0456.html">CVE-2012-0456</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0457.html">CVE-2012-0457</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0458.html">CVE-2012-0458</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0459.html">CVE-2012-0459</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0460.html">CVE-2012-0460</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0461.html">CVE-2012-0461</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0462.html">CVE-2012-0462</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0464.html">CVE-2012-0464</cve>
        <bugzilla href="http://bugzilla.redhat.com/729632" id="729632">Segfault on quit with Chinese locale [ @ gdk_display_close() ]</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/784048" id="784048">Typing into Web Console in Firefox causes crashing - gcc 4.4.3</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/799042" id="799042">not able to install java-plugin</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803109" id="803109">CVE-2012-0461 CVE-2012-0462 CVE-2012-0464 Mozilla: Miscellaneous memory safety hazards (rv:11.0/ rv:10.0.3 / rv:1.9.2.28) (MFSA 2012-19)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803111" id="803111">CVE-2012-0460 Mozilla: window.fullScreen writeable by untrusted content (MFSA 2012-18)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803112" id="803112">CVE-2012-0459 Mozilla: Crash when accessing keyframe cssText after dynamic modification (MFSA 2012-17)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803113" id="803113">CVE-2012-0458 Mozilla: Escalation of privilege with Javascript: URL as home page (MFSA 2012-16)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803114" id="803114">CVE-2012-0451 Mozilla: XSS with multiple Content Security Policy headers (MFSA 2012-15)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803116" id="803116">CVE-2012-0456 CVE-2012-0457 Mozilla: SVG issues found with Address Sanitizer (MFSA 2012-14)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803119" id="803119">CVE-2012-0455 Mozilla: XSS with Drag and Drop and Javascript: URL (MFSA 2012-13)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120387004" comment="xulrunner-devel is earlier than 0:10.0.3-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079018" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120387002" comment="xulrunner is earlier than 0:10.0.3-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079016" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120387006" comment="firefox is earlier than 0:10.0.3-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079020" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120387014" comment="xulrunner-devel is earlier than 0:10.0.3-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079008" comment="xulrunner-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120387012" comment="xulrunner is earlier than 0:10.0.3-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079006" comment="xulrunner is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120387016" comment="firefox is earlier than 0:10.0.3-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079010" comment="firefox is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120388" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0388: thunderbird security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0388-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0388.html" />
      <reference source="CVE" ref_id="CVE-2012-0451" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0451.html" />
      <reference source="CVE" ref_id="CVE-2012-0455" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0455.html" />
      <reference source="CVE" ref_id="CVE-2012-0456" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0456.html" />
      <reference source="CVE" ref_id="CVE-2012-0457" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0457.html" />
      <reference source="CVE" ref_id="CVE-2012-0458" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0458.html" />
      <reference source="CVE" ref_id="CVE-2012-0459" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0459.html" />
      <reference source="CVE" ref_id="CVE-2012-0460" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0460.html" />
      <reference source="CVE" ref_id="CVE-2012-0461" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0461.html" />
      <reference source="CVE" ref_id="CVE-2012-0462" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0462.html" />
      <reference source="CVE" ref_id="CVE-2012-0464" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0464.html" />
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

Several flaws were found in the processing of malformed content. Malicious
content could cause Thunderbird to crash or, potentially, execute arbitrary
code with the privileges of the user running Thunderbird. (CVE-2012-0461,
CVE-2012-0462, CVE-2012-0464)

Two flaws were found in the way Thunderbird parsed certain Scalable Vector
Graphics (SVG) image files. An HTML mail message containing a malicious SVG
image file could cause an information leak, or cause Thunderbird to crash
or, potentially, execute arbitrary code with the privileges of the user
running Thunderbird. (CVE-2012-0456, CVE-2012-0457)

A flaw could allow malicious content to bypass intended restrictions,
possibly leading to a cross-site scripting (XSS) attack if a user were
tricked into dropping a "javascript:" link onto a frame. (CVE-2012-0455)

It was found that the home page could be set to a "javascript:" link. If a
user were tricked into setting such a home page by dragging a link to the
home button, it could cause Firefox to repeatedly crash, eventually leading
to arbitrary code execution with the privileges of the user running
Firefox. A similar flaw was found and fixed in Thunderbird. (CVE-2012-0458)

A flaw was found in the way Thunderbird parsed certain, remote content
containing "cssText". Malicious, remote content could cause Thunderbird to
crash or, potentially, execute arbitrary code with the privileges of the
user running Thunderbird. (CVE-2012-0459)

It was found that by using the DOM fullscreen API, untrusted content could
bypass the mozRequestFullscreen security protections. Malicious content
could exploit this API flaw to cause user interface spoofing.
(CVE-2012-0460)

A flaw was found in the way Thunderbird handled content with multiple
Content Security Policy (CSP) headers. This could lead to a cross-site
scripting attack if used in conjunction with a website that has a header
injection flaw. (CVE-2012-0451)

Note: All issues except CVE-2012-0456 and CVE-2012-0457 cannot be exploited
by a specially-crafted HTML mail message as JavaScript is disabled by
default for mail messages. It could be exploited another way in
Thunderbird, for example, when viewing the full remote content of an RSS
feed.

All Thunderbird users should upgrade to this updated package, which
contains Thunderbird version 10.0.3 ESR, which corrects these issues. After
installing the update, Thunderbird must be restarted for the changes to
take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-14" />
        <updated date="2012-03-14" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0451.html">CVE-2012-0451</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0455.html">CVE-2012-0455</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0456.html">CVE-2012-0456</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0457.html">CVE-2012-0457</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0458.html">CVE-2012-0458</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0459.html">CVE-2012-0459</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0460.html">CVE-2012-0460</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0461.html">CVE-2012-0461</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0462.html">CVE-2012-0462</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0464.html">CVE-2012-0464</cve>
        <bugzilla href="http://bugzilla.redhat.com/803109" id="803109">CVE-2012-0461 CVE-2012-0462 CVE-2012-0464 Mozilla: Miscellaneous memory safety hazards (rv:11.0/ rv:10.0.3 / rv:1.9.2.28) (MFSA 2012-19)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803111" id="803111">CVE-2012-0460 Mozilla: window.fullScreen writeable by untrusted content (MFSA 2012-18)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803112" id="803112">CVE-2012-0459 Mozilla: Crash when accessing keyframe cssText after dynamic modification (MFSA 2012-17)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803113" id="803113">CVE-2012-0458 Mozilla: Escalation of privilege with Javascript: URL as home page (MFSA 2012-16)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803114" id="803114">CVE-2012-0451 Mozilla: XSS with multiple Content Security Policy headers (MFSA 2012-15)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803116" id="803116">CVE-2012-0456 CVE-2012-0457 Mozilla: SVG issues found with Address Sanitizer (MFSA 2012-14)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/803119" id="803119">CVE-2012-0455 Mozilla: XSS with Drag and Drop and Javascript: URL (MFSA 2012-13)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_productivity</cpe>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120388002" comment="thunderbird is earlier than 0:10.0.3-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120085006" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120388008" comment="thunderbird is earlier than 0:10.0.3-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120080006" comment="thunderbird is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120393" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0393: glibc security and bug fix update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0393-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0393.html" />
      <reference source="CVE" ref_id="CVE-2012-0864" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0864.html" />
    <description>The glibc packages provide the standard C and standard math libraries used
by multiple programs on the system. Without these libraries, the Linux
system cannot function correctly.

An integer overflow flaw was found in the implementation of the printf
functions family. This could allow an attacker to bypass FORTIFY_SOURCE
protections and execute arbitrary code using a format string flaw in
an application, even though these protections are expected to limit the
impact of such flaws to an application abort. (CVE-2012-0864)

This update also fixes the following bugs:

* Previously, the dynamic loader generated an incorrect ordering for
initialization according to the ELF specification. This could result in
incorrect ordering of DSO constructors and destructors. With this update,
dependency resolution has been fixed. (BZ#783999)

* Previously, locking of the main malloc arena was incorrect in the retry
path. This could result in a deadlock if an sbrk request failed. With this
update, locking of the main arena in the retry path has been fixed. This
issue was exposed by a bug fix provided in the RHSA-2012:0058 update.
(BZ#795328)

* Calling memcpy with overlapping arguments on certain processors would
generate unexpected results. While such code is a clear violation of
ANSI/ISO standards, this update restores prior memcpy behavior. (BZ#799259)

All users of glibc are advised to upgrade to these updated packages, which
contain patches to resolve these issues.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-15" />
        <updated date="2012-03-15" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0864.html">CVE-2012-0864</cve>
        <bugzilla href="http://bugzilla.redhat.com/794766" id="794766">CVE-2012-0864 glibc: FORTIFY_SOURCE format string protection bypass via "nargs" integer overflow</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/799259" id="799259">Change in memcpy behavior for overlapping arguments breaks existing applications</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120393013" comment="nscd is earlier than 0:2.12-1.47.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058008" comment="nscd is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120393005" comment="glibc is earlier than 0:2.12-1.47.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058006" comment="glibc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120393011" comment="glibc-static is earlier than 0:2.12-1.47.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058016" comment="glibc-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120393017" comment="glibc-devel is earlier than 0:2.12-1.47.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058014" comment="glibc-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120393015" comment="glibc-headers is earlier than 0:2.12-1.47.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058012" comment="glibc-headers is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120393009" comment="glibc-common is earlier than 0:2.12-1.47.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058018" comment="glibc-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120393007" comment="glibc-utils is earlier than 0:2.12-1.47.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120058010" comment="glibc-utils is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120397" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0397: glibc security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0397-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0397.html" />
      <reference source="CVE" ref_id="CVE-2012-0864" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0864.html" />
    <description>The glibc packages provide the standard C and standard math libraries used
by multiple programs on the system. Without these libraries, the Linux
system cannot function correctly.

An integer overflow flaw was found in the implementation of the printf
functions family. This could allow an attacker to bypass FORTIFY_SOURCE
protections and execute arbitrary code using a format string flaw in an
application, even though these protections are expected to limit the impact
of such flaws to an application abort. (CVE-2012-0864)

All users of glibc are advised to upgrade to these updated packages, which
contain a patch to resolve this issue.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-19" />
        <updated date="2012-03-19" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0864.html">CVE-2012-0864</cve>
        <bugzilla href="http://bugzilla.redhat.com/794766" id="794766">CVE-2012-0864 glibc: FORTIFY_SOURCE format string protection bypass via "nargs" integer overflow</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120397012" comment="nscd is earlier than 0:2.5-81.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126007" comment="nscd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120397002" comment="glibc is earlier than 0:2.5-81.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126003" comment="glibc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120397008" comment="glibc-devel is earlier than 0:2.5-81.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126005" comment="glibc-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120397010" comment="glibc-common is earlier than 0:2.5-81.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126013" comment="glibc-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120397006" comment="glibc-headers is earlier than 0:2.5-81.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126009" comment="glibc-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120397004" comment="glibc-utils is earlier than 0:2.5-81.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120126011" comment="glibc-utils is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120407" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0407: libpng security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0407-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0407.html" />
      <reference source="CVE" ref_id="CVE-2011-3045" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3045.html" />
    <description>The libpng packages contain a library of functions for creating and
manipulating PNG (Portable Network Graphics) image format files.

A heap-based buffer overflow flaw was found in the way libpng processed
compressed chunks in PNG image files. An attacker could create a
specially-crafted PNG image file that, when opened, could cause an
application using libpng to crash or, possibly, execute arbitrary code with
the privileges of the user running the application. (CVE-2011-3045)

Users of libpng should upgrade to these updated packages, which correct
this issue. For Red Hat Enterprise Linux 5, they contain a backported
patch. For Red Hat Enterprise Linux 6, they upgrade libpng to version
1.2.48. All running applications using libpng must be restarted for the
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-20" />
        <updated date="2012-03-20" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3045.html">CVE-2011-3045</cve>
        <bugzilla href="http://bugzilla.redhat.com/799000" id="799000">CVE-2011-3045 libpng: buffer overflow in png_inflate caused by invalid type conversions</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120407002" comment="libpng is earlier than 2:1.2.10-16.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317022" comment="libpng is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120407004" comment="libpng-devel is earlier than 2:1.2.10-16.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317024" comment="libpng-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120407010" comment="libpng is earlier than 2:1.2.48-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317006" comment="libpng is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120407012" comment="libpng-static is earlier than 2:1.2.48-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317010" comment="libpng-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120407014" comment="libpng-devel is earlier than 2:1.2.48-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317008" comment="libpng-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120410" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0410: raptor security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0410-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0410.html" />
      <reference source="CVE" ref_id="CVE-2012-0037" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0037.html" />
    <description>Raptor provides parsers for Resource Description Framework (RDF) files.

An XML External Entity expansion flaw was found in the way Raptor processed
RDF files. If an application linked against Raptor were to open a 
specially-crafted RDF file, it could possibly allow a remote attacker to 
obtain a copy of an arbitrary local file that the user running the
application had access to. A bug in the way Raptor handled external
entities could cause that application to crash or, possibly, execute
arbitrary code with the privileges of the user running the application.
(CVE-2012-0037)

Red Hat would like to thank Timothy D. Morgan of VSR for reporting this
issue.

All Raptor users are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. All running applications
linked against Raptor must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-22" />
        <updated date="2012-03-22" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0037.html">CVE-2012-0037</cve>
        <bugzilla href="http://bugzilla.redhat.com/791296" id="791296">CVE-2012-0037 raptor: XML External Entity (XXE) attack via RDF files</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120410005" comment="raptor is earlier than 0:1.4.18-5.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120410006" comment="raptor is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120410007" comment="raptor-devel is earlier than 0:1.4.18-5.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120410008" comment="raptor-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120411" version="502" class="patch">
      <metadata>
        <title>RHSA-2012:0411: openoffice.org security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0411-01" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0411.html" />
      <reference source="CVE" ref_id="CVE-2012-0037" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0037.html" />
    <description>OpenOffice.org is an office productivity suite that includes desktop
applications, such as a word processor, spreadsheet application,
presentation manager, formula editor, and a drawing program. OpenOffice.org
embeds a copy of Raptor, which provides parsers for Resource Description
Framework (RDF) files.

An XML External Entity expansion flaw was found in the way Raptor processed
RDF files. If OpenOffice.org were to open a specially-crafted file (such
as an OpenDocument Format or OpenDocument Presentation file), it could
possibly allow a remote attacker to obtain a copy of an arbitrary local
file that the user running OpenOffice.org had access to. A bug in the way
Raptor handled external entities could cause OpenOffice.org to crash or,
possibly, execute arbitrary code with the privileges of the user running 
OpenOffice.org. (CVE-2012-0037)

Red Hat would like to thank Timothy D. Morgan of VSR for reporting this
issue.

All OpenOffice.org users are advised to upgrade to these updated packages,
which contain backported patches to correct this issue. All running
instances of OpenOffice.org applications must be restarted for this update
to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-22" />
        <updated date="2012-03-22" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0037.html">CVE-2012-0037</cve>
        <bugzilla href="http://bugzilla.redhat.com/791296" id="791296">CVE-2012-0037 raptor: XML External Entity (XXE) attack via RDF files</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_productivity</cpe>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411052" comment="openoffice.org-langpack-de is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411053" comment="openoffice.org-langpack-de is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411088" comment="openoffice.org-langpack-hu_HU is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411089" comment="openoffice.org-langpack-hu_HU is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411092" comment="openoffice.org-javafilter is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411093" comment="openoffice.org-javafilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411110" comment="openoffice.org-testtools is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411111" comment="openoffice.org-testtools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411014" comment="openoffice.org-writer is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411015" comment="openoffice.org-writer is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411118" comment="openoffice.org-langpack-ar is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411119" comment="openoffice.org-langpack-ar is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411126" comment="openoffice.org-langpack-as_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411127" comment="openoffice.org-langpack-as_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411058" comment="openoffice.org-pyuno is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411059" comment="openoffice.org-pyuno is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411036" comment="openoffice.org-langpack-ve_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411037" comment="openoffice.org-langpack-ve_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411112" comment="openoffice.org-langpack-tr_TR is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411113" comment="openoffice.org-langpack-tr_TR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411062" comment="openoffice.org-langpack-da_DK is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411063" comment="openoffice.org-langpack-da_DK is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411038" comment="openoffice.org-ure is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411039" comment="openoffice.org-ure is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411150" comment="openoffice.org-langpack-xh_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411151" comment="openoffice.org-langpack-xh_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411144" comment="openoffice.org-langpack-pt_BR is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411145" comment="openoffice.org-langpack-pt_BR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411068" comment="openoffice.org-langpack-sk_SK is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411069" comment="openoffice.org-langpack-sk_SK is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411078" comment="openoffice.org-langpack-af_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411079" comment="openoffice.org-langpack-af_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411026" comment="openoffice.org-sdk is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411027" comment="openoffice.org-sdk is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411096" comment="openoffice.org-langpack-st_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411097" comment="openoffice.org-langpack-st_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411018" comment="openoffice.org-langpack-zu_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411019" comment="openoffice.org-langpack-zu_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411122" comment="openoffice.org-langpack-sv is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411123" comment="openoffice.org-langpack-sv is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411138" comment="openoffice.org-langpack-hr_HR is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411139" comment="openoffice.org-langpack-hr_HR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411032" comment="openoffice.org-base is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411033" comment="openoffice.org-base is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411116" comment="openoffice.org-langpack-el_GR is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411117" comment="openoffice.org-langpack-el_GR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411040" comment="openoffice.org-langpack-ja_JP is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411041" comment="openoffice.org-langpack-ja_JP is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411134" comment="openoffice.org-langpack-fi_FI is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411135" comment="openoffice.org-langpack-fi_FI is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411046" comment="openoffice.org-langpack-pt_PT is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411047" comment="openoffice.org-langpack-pt_PT is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411016" comment="openoffice.org-langpack-nr_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411017" comment="openoffice.org-langpack-nr_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411128" comment="openoffice.org-langpack-fr is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411129" comment="openoffice.org-langpack-fr is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411056" comment="openoffice.org-langpack-ca_ES is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411057" comment="openoffice.org-langpack-ca_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411098" comment="openoffice.org-langpack-it is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411099" comment="openoffice.org-langpack-it is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411012" comment="openoffice.org-langpack-sl_SI is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411013" comment="openoffice.org-langpack-sl_SI is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411130" comment="openoffice.org-langpack-ko_KR is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411131" comment="openoffice.org-langpack-ko_KR is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411060" comment="openoffice.org-math is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411061" comment="openoffice.org-math is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411100" comment="openoffice.org-langpack-mr_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411101" comment="openoffice.org-langpack-mr_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411028" comment="openoffice.org-impress is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411029" comment="openoffice.org-impress is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411030" comment="openoffice.org-langpack-ms_MY is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411031" comment="openoffice.org-langpack-ms_MY is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411142" comment="openoffice.org-graphicfilter is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411143" comment="openoffice.org-graphicfilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411136" comment="openoffice.org-langpack-cy_GB is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411137" comment="openoffice.org-langpack-cy_GB is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411124" comment="openoffice.org-langpack-nb_NO is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411125" comment="openoffice.org-langpack-nb_NO is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411086" comment="openoffice.org-sdk-doc is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411087" comment="openoffice.org-sdk-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411082" comment="openoffice.org-draw is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411083" comment="openoffice.org-draw is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411102" comment="openoffice.org-langpack-pa_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411103" comment="openoffice.org-langpack-pa_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411156" comment="openoffice.org-langpack-ru is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411157" comment="openoffice.org-langpack-ru is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411048" comment="openoffice.org-headless is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411049" comment="openoffice.org-headless is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411024" comment="openoffice.org-langpack-bn is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411025" comment="openoffice.org-langpack-bn is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411020" comment="openoffice.org-langpack-lt_LT is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411021" comment="openoffice.org-langpack-lt_LT is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411054" comment="openoffice.org-langpack-zh_TW is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411055" comment="openoffice.org-langpack-zh_TW is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411076" comment="openoffice.org-langpack-bg_BG is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411077" comment="openoffice.org-langpack-bg_BG is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411120" comment="openoffice.org-langpack-nl is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411121" comment="openoffice.org-langpack-nl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411108" comment="openoffice.org-langpack-or_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411109" comment="openoffice.org-langpack-or_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411084" comment="openoffice.org-langpack-kn_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411085" comment="openoffice.org-langpack-kn_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411034" comment="openoffice.org-xsltfilter is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411035" comment="openoffice.org-xsltfilter is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411152" comment="openoffice.org-langpack-ss_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411153" comment="openoffice.org-langpack-ss_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411140" comment="openoffice.org-langpack-tn_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411141" comment="openoffice.org-langpack-tn_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411042" comment="openoffice.org-langpack-eu_ES is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411043" comment="openoffice.org-langpack-eu_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411006" comment="openoffice.org-core is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411007" comment="openoffice.org-core is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411070" comment="openoffice.org-calc is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411071" comment="openoffice.org-calc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411002" comment="openoffice.org is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411003" comment="openoffice.org is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411072" comment="openoffice.org-langpack-he_IL is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411073" comment="openoffice.org-langpack-he_IL is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411148" comment="openoffice.org-langpack-th_TH is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411149" comment="openoffice.org-langpack-th_TH is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411146" comment="openoffice.org-emailmerge is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411147" comment="openoffice.org-emailmerge is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411044" comment="openoffice.org-langpack-gl_ES is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411045" comment="openoffice.org-langpack-gl_ES is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411022" comment="openoffice.org-langpack-pl_PL is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411023" comment="openoffice.org-langpack-pl_PL is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411074" comment="openoffice.org-langpack-te_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411075" comment="openoffice.org-langpack-te_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411050" comment="openoffice.org-langpack-ta_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411051" comment="openoffice.org-langpack-ta_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411104" comment="openoffice.org-langpack-et_EE is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411105" comment="openoffice.org-langpack-et_EE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411004" comment="openoffice.org-langpack-ur is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411005" comment="openoffice.org-langpack-ur is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411010" comment="openoffice.org-langpack-gu_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411011" comment="openoffice.org-langpack-gu_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411106" comment="openoffice.org-langpack-hi_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411107" comment="openoffice.org-langpack-hi_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411154" comment="openoffice.org-langpack-nn_NO is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411155" comment="openoffice.org-langpack-nn_NO is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411064" comment="openoffice.org-langpack-ts_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411065" comment="openoffice.org-langpack-ts_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411132" comment="openoffice.org-langpack-zh_CN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411133" comment="openoffice.org-langpack-zh_CN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411114" comment="openoffice.org-langpack-ml_IN is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411115" comment="openoffice.org-langpack-ml_IN is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411080" comment="openoffice.org-langpack-cs_CZ is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411081" comment="openoffice.org-langpack-cs_CZ is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411090" comment="openoffice.org-langpack-sr_CS is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411091" comment="openoffice.org-langpack-sr_CS is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411008" comment="openoffice.org-langpack-es is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411009" comment="openoffice.org-langpack-es is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411066" comment="openoffice.org-langpack-ga_IE is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411067" comment="openoffice.org-langpack-ga_IE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120411094" comment="openoffice.org-langpack-nso_ZA is earlier than 1:3.1.1-19.10.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120411095" comment="openoffice.org-langpack-nso_ZA is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120426" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0426: openssl security and bug fix update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0426-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0426.html" />
      <reference source="CVE" ref_id="CVE-2012-0884" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0884.html" />
      <reference source="CVE" ref_id="CVE-2012-1165" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1165.html" />
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

A NULL pointer dereference flaw was found in the way OpenSSL parsed
Secure/Multipurpose Internet Mail Extensions (S/MIME) messages. An attacker
could use this flaw to crash an application that uses OpenSSL to decrypt or
verify S/MIME messages. (CVE-2012-1165)

A flaw was found in the PKCS#7 and Cryptographic Message Syntax (CMS)
implementations in OpenSSL. An attacker could possibly use this flaw to
perform a Bleichenbacher attack to decrypt an encrypted CMS, PKCS#7, or
S/MIME message by sending a large number of chosen ciphertext messages to
a service using OpenSSL and measuring error response times. (CVE-2012-0884)

This update also fixes a regression caused by the fix for CVE-2011-4619,
released via RHSA-2012:0060 and RHSA-2012:0059, which caused Server Gated
Cryptography (SGC) handshakes to fail.

All OpenSSL users should upgrade to these updated packages, which contain
backported patches to resolve these issues. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-27" />
        <updated date="2012-03-27" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0884.html">CVE-2012-0884</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1165.html">CVE-2012-1165</cve>
        <bugzilla href="http://bugzilla.redhat.com/802489" id="802489">CVE-2012-1165 openssl: mime_param_cmp NULL dereference crash</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/802725" id="802725">CVE-2012-0884 openssl: CMS and PKCS#7 Bleichenbacher attack</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120426004" comment="openssl-devel is earlier than 0:0.9.8e-22.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060007" comment="openssl-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120426002" comment="openssl is earlier than 0:0.9.8e-22.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060003" comment="openssl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120426006" comment="openssl-perl is earlier than 0:0.9.8e-22.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060005" comment="openssl-perl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120426016" comment="openssl-devel is earlier than 0:1.0.0-20.el6_2.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059010" comment="openssl-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120426012" comment="openssl is earlier than 0:1.0.0-20.el6_2.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059006" comment="openssl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120426018" comment="openssl-perl is earlier than 0:1.0.0-20.el6_2.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059008" comment="openssl-perl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120426014" comment="openssl-static is earlier than 0:1.0.0-20.el6_2.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059012" comment="openssl-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120427" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0427: libtasn1 security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0427-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0427.html" />
      <reference source="CVE" ref_id="CVE-2012-1569" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1569.html" />
    <description>libtasn1 is a library developed for ASN.1 (Abstract Syntax Notation One)
structures management that includes DER (Distinguished Encoding Rules)
encoding and decoding.

A flaw was found in the way libtasn1 decoded DER data. An attacker could
create carefully-crafted DER encoded input (such as an X.509 certificate)
that, when parsed by an application that uses libtasn1 (such as
applications using GnuTLS), could cause the application to crash.
(CVE-2012-1569)

Red Hat would like to thank Matthew Hall of Mu Dynamics for reporting this
issue.

Users of libtasn1 are advised to upgrade to these updated packages, which
contain a backported patch to correct this issue. For the update to take
effect, all applications linked to the libtasn1 library must be restarted,
or the system rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-27" />
        <updated date="2012-03-27" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1569.html">CVE-2012-1569</cve>
        <bugzilla href="http://bugzilla.redhat.com/804920" id="804920">CVE-2012-1569 libtasn1: DER decoding buffer overflow (GNUTLS-SA-2012-3, MU-201202-02)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120427009" comment="libtasn1-devel is earlier than 0:2.3-3.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120427010" comment="libtasn1-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120427005" comment="libtasn1 is earlier than 0:2.3-3.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120427006" comment="libtasn1 is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120427007" comment="libtasn1-tools is earlier than 0:2.3-3.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120427008" comment="libtasn1-tools is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120428" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0428: gnutls security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0428-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0428.html" />
      <reference source="CVE" ref_id="CVE-2011-4128" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4128.html" />
      <reference source="CVE" ref_id="CVE-2012-1569" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1569.html" />
      <reference source="CVE" ref_id="CVE-2012-1573" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1573.html" />
    <description>The GnuTLS library provides support for cryptographic algorithms and for
protocols such as Transport Layer Security (TLS). GnuTLS includes libtasn1,
a library developed for ASN.1 (Abstract Syntax Notation One) structures
management that includes DER (Distinguished Encoding Rules) encoding and
decoding.

A flaw was found in the way GnuTLS decrypted malformed TLS records. This
could cause a TLS/SSL client or server to crash when processing a
specially-crafted TLS record from a remote TLS/SSL connection peer.
(CVE-2012-1573)

A flaw was found in the way libtasn1 decoded DER data. An attacker could
create a carefully-crafted X.509 certificate that, when parsed by an
application that uses GnuTLS, could cause the application to crash.
(CVE-2012-1569)

A boundary error was found in the gnutls_session_get_data() function. A
malicious TLS/SSL server could use this flaw to crash a TLS/SSL client or,
possibly, execute arbitrary code as the client, if the client passed a
fixed-sized buffer to gnutls_session_get_data() before checking the real
size of the session data provided by the server. (CVE-2011-4128)

Red Hat would like to thank Matthew Hall of Mu Dynamics for reporting
CVE-2012-1573 and CVE-2012-1569.

Users of GnuTLS are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all applications linked to the GnuTLS library must be restarted, or
the system rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-27" />
        <updated date="2012-03-27" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4128.html">CVE-2011-4128</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1569.html">CVE-2012-1569</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1573.html">CVE-2012-1573</cve>
        <bugzilla href="http://bugzilla.redhat.com/752308" id="752308">CVE-2011-4128 gnutls: buffer overflow in gnutls_session_get_data() (GNUTLS-SA-2011-2)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/804920" id="804920">CVE-2012-1569 libtasn1: DER decoding buffer overflow (GNUTLS-SA-2012-3, MU-201202-02)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/805432" id="805432">CVE-2012-1573 gnutls: TLS record handling issue (GNUTLS-SA-2012-2, MU-201202-01)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120428002" comment="gnutls is earlier than 0:1.4.1-7.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120428003" comment="gnutls is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120428006" comment="gnutls-devel is earlier than 0:1.4.1-7.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120428007" comment="gnutls-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120428004" comment="gnutls-utils is earlier than 0:1.4.1-7.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120428005" comment="gnutls-utils is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120429" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0429: gnutls security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0429-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0429.html" />
      <reference source="CVE" ref_id="CVE-2011-4128" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4128.html" />
      <reference source="CVE" ref_id="CVE-2012-1573" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1573.html" />
    <description>The GnuTLS library provides support for cryptographic algorithms and for
protocols such as Transport Layer Security (TLS).

A flaw was found in the way GnuTLS decrypted malformed TLS records. This
could cause a TLS/SSL client or server to crash when processing a
specially-crafted TLS record from a remote TLS/SSL connection peer.
(CVE-2012-1573)

A boundary error was found in the gnutls_session_get_data() function. A
malicious TLS/SSL server could use this flaw to crash a TLS/SSL client or,
possibly, execute arbitrary code as the client, if the client passed a
fixed-sized buffer to gnutls_session_get_data() before checking the real
size of the session data provided by the server. (CVE-2011-4128)

Red Hat would like to thank Matthew Hall of Mu Dynamics for reporting
CVE-2012-1573.

Users of GnuTLS are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. For the update to take
effect, all applications linked to the GnuTLS library must be restarted, or
the system rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-27" />
        <updated date="2012-03-27" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4128.html">CVE-2011-4128</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1573.html">CVE-2012-1573</cve>
        <bugzilla href="http://bugzilla.redhat.com/752308" id="752308">CVE-2011-4128 gnutls: buffer overflow in gnutls_session_get_data() (GNUTLS-SA-2011-2)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/805432" id="805432">CVE-2012-1573 gnutls: TLS record handling issue (GNUTLS-SA-2012-2, MU-201202-01)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120429005" comment="gnutls is earlier than 0:2.8.5-4.el6_2.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120429006" comment="gnutls is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120429009" comment="gnutls-devel is earlier than 0:2.8.5-4.el6_2.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120429010" comment="gnutls-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120429007" comment="gnutls-utils is earlier than 0:2.8.5-4.el6_2.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120429008" comment="gnutls-utils is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120429011" comment="gnutls-guile is earlier than 0:2.8.5-4.el6_2.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120429012" comment="gnutls-guile is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120434" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0434: flash-plugin security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0434-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0434.html" />
      <reference source="CVE" ref_id="CVE-2012-0773" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0773.html" />
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes one vulnerability in Adobe Flash Player. This
vulnerability is detailed on the Adobe security page APSB12-07, listed in
the References section. Specially-crafted SWF content could cause
flash-plugin to crash or, potentially, execute arbitrary code when a victim
loads a page containing the specially-crafted SWF content. (CVE-2012-0773)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.3.183.18.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-03-29" />
        <updated date="2012-03-29" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0773.html">CVE-2012-0773</cve>
        <bugzilla href="http://bugzilla.redhat.com/807707" id="807707">CVE-2012-0773 flash-plugin: arbitrary code execution via memory corruption flaw in NetStream class (APSB12-07)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120434002" comment="flash-plugin is earlier than 0:10.3.183.18-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120359003" comment="flash-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120434008" comment="flash-plugin is earlier than 0:10.3.183.18-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120144006" comment="flash-plugin is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120451" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0451: rpm security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0451-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0451.html" />
      <reference source="CVE" ref_id="CVE-2012-0060" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0060.html" />
      <reference source="CVE" ref_id="CVE-2012-0061" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0061.html" />
      <reference source="CVE" ref_id="CVE-2012-0815" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0815.html" />
    <description>The RPM Package Manager (RPM) is a command-line driven package management
system capable of installing, uninstalling, verifying, querying, and
updating software packages.

Multiple flaws were found in the way RPM parsed package file headers. An
attacker could create a specially-crafted RPM package that, when its
package header was accessed, or during package signature verification,
could cause an application using the RPM library (such as the rpm command
line tool, or the yum and up2date package managers) to crash or,
potentially, execute arbitrary code. (CVE-2012-0060, CVE-2012-0061,
CVE-2012-0815)

Note: Although an RPM package can, by design, execute arbitrary code when
installed, this issue would allow a specially-crafted RPM package to
execute arbitrary code before its digital signature has been verified.
Package downloads from the Red Hat Network are protected by the use of a
secure HTTPS connection in addition to the RPM package signature checks.

All RPM users should upgrade to these updated packages, which contain a
backported patch to correct these issues. All running applications linked
against the RPM library must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-03" />
        <updated date="2012-04-03" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0060.html">CVE-2012-0060</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0061.html">CVE-2012-0061</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0815.html">CVE-2012-0815</cve>
        <bugzilla href="http://bugzilla.redhat.com/744104" id="744104">CVE-2012-0815 rpm: incorrect handling of negated offsets in headerVerifyInfo()</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/744858" id="744858">CVE-2012-0060 rpm: insufficient validation of region tags</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/798585" id="798585">CVE-2012-0061 rpm: improper validation of header contents total size in headerLoad()</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:rhel_els</cpe>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        <cpe>cpe:/o:redhat:rhel_aus</cpe>
        <cpe>cpe:/o:redhat:rhel_eus</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451014" comment="popt is earlier than 0:1.10.2.3-28.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451015" comment="popt is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451002" comment="rpm is earlier than 0:4.4.2.3-28.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451003" comment="rpm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451008" comment="rpm-python is earlier than 0:4.4.2.3-28.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451009" comment="rpm-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451006" comment="rpm-libs is earlier than 0:4.4.2.3-28.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451007" comment="rpm-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451012" comment="rpm-build is earlier than 0:4.4.2.3-28.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451013" comment="rpm-build is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451010" comment="rpm-apidocs is earlier than 0:4.4.2.3-28.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451011" comment="rpm-apidocs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451004" comment="rpm-devel is earlier than 0:4.4.2.3-28.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451005" comment="rpm-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451024" comment="rpm-cron is earlier than 0:4.8.0-19.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451025" comment="rpm-cron is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451020" comment="rpm is earlier than 0:4.8.0-19.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451021" comment="rpm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451030" comment="rpm-python is earlier than 0:4.8.0-19.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451031" comment="rpm-python is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451032" comment="rpm-libs is earlier than 0:4.8.0-19.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451033" comment="rpm-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451026" comment="rpm-build is earlier than 0:4.8.0-19.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451027" comment="rpm-build is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451028" comment="rpm-devel is earlier than 0:4.8.0-19.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451029" comment="rpm-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120451022" comment="rpm-apidocs is earlier than 0:4.8.0-19.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120451023" comment="rpm-apidocs is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120465" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0465: samba security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0465-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0465.html" />
      <reference source="CVE" ref_id="CVE-2012-1182" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1182.html" />
    <description>Samba is an open-source implementation of the Server Message Block (SMB) or
Common Internet File System (CIFS) protocol, which allows PC-compatible
machines to share files, printers, and other information.

A flaw in the Samba suite's Perl-based DCE/RPC IDL (PIDL) compiler, used
to generate code to handle RPC calls, resulted in multiple buffer overflows
in Samba. A remote, unauthenticated attacker could send a specially-crafted
RPC request that would cause the Samba daemon (smbd) to crash or, possibly,
execute arbitrary code with the privileges of the root user.
(CVE-2012-1182)

Users of Samba are advised to upgrade to these updated packages, which
contain a backported patch to resolve this issue. After installing this
update, the smb service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-10" />
        <updated date="2012-04-10" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1182.html">CVE-2012-1182</cve>
        <bugzilla href="http://bugzilla.redhat.com/804093" id="804093">CVE-2012-1182 samba: Multiple heap-based buffer overflows in memory management based on NDR marshalling code output</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        <cpe>cpe:/o:redhat:rhel_aus</cpe>
        <cpe>cpe:/o:redhat:rhel_eus</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465002" comment="samba is earlier than 0:3.0.33-3.39.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313003" comment="samba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465004" comment="libsmbclient is earlier than 0:3.0.33-3.39.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313013" comment="libsmbclient is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465006" comment="samba-client is earlier than 0:3.0.33-3.39.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313009" comment="samba-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465010" comment="libsmbclient-devel is earlier than 0:3.0.33-3.39.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313007" comment="libsmbclient-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465008" comment="samba-swat is earlier than 0:3.0.33-3.39.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313005" comment="samba-swat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465012" comment="samba-common is earlier than 0:3.0.33-3.39.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120313011" comment="samba-common is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465022" comment="samba-winbind-devel is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465023" comment="samba-winbind-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465018" comment="samba is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465019" comment="samba is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465026" comment="samba-domainjoin-gui is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465027" comment="samba-domainjoin-gui is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465030" comment="samba-doc is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465031" comment="samba-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465034" comment="libsmbclient is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465035" comment="libsmbclient is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465028" comment="samba-winbind-clients is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465029" comment="samba-winbind-clients is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465040" comment="samba-winbind is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465041" comment="samba-winbind is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465036" comment="samba-client is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465037" comment="samba-client is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465024" comment="libsmbclient-devel is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465025" comment="libsmbclient-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465020" comment="samba-winbind-krb5-locator is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465021" comment="samba-winbind-krb5-locator is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465032" comment="samba-swat is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465033" comment="samba-swat is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120465038" comment="samba-common is earlier than 0:3.5.10-115.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465039" comment="samba-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120466" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0466: samba3x security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0466-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0466.html" />
      <reference source="CVE" ref_id="CVE-2012-1182" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1182.html" />
    <description>Samba is an open-source implementation of the Server Message Block (SMB) or
Common Internet File System (CIFS) protocol, which allows PC-compatible
machines to share files, printers, and other information.

A flaw in the Samba suite's Perl-based DCE/RPC IDL (PIDL) compiler, used
to generate code to handle RPC calls, resulted in multiple buffer overflows
in Samba. A remote, unauthenticated attacker could send a specially-crafted
RPC request that would cause the Samba daemon (smbd) to crash or, possibly,
execute arbitrary code with the privileges of the root user.
(CVE-2012-1182)

Users of Samba are advised to upgrade to these updated packages, which
contain a backported patch to resolve this issue. After installing this
update, the smb service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-10" />
        <updated date="2012-04-10" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1182.html">CVE-2012-1182</cve>
        <bugzilla href="http://bugzilla.redhat.com/804093" id="804093">CVE-2012-1182 samba: Multiple heap-based buffer overflows in memory management based on NDR marshalling code output</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        <cpe>cpe:/o:redhat:rhel_eus</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120466012" comment="samba3x-common is earlier than 0:3.5.10-0.108.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466013" comment="samba3x-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120466014" comment="samba3x-swat is earlier than 0:3.5.10-0.108.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466015" comment="samba3x-swat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120466006" comment="samba3x-domainjoin-gui is earlier than 0:3.5.10-0.108.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466007" comment="samba3x-domainjoin-gui is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120466010" comment="samba3x-client is earlier than 0:3.5.10-0.108.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466011" comment="samba3x-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120466002" comment="samba3x is earlier than 0:3.5.10-0.108.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466003" comment="samba3x is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120466016" comment="samba3x-winbind is earlier than 0:3.5.10-0.108.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466017" comment="samba3x-winbind is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120466008" comment="samba3x-winbind-devel is earlier than 0:3.5.10-0.108.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466009" comment="samba3x-winbind-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120466004" comment="samba3x-doc is earlier than 0:3.5.10-0.108.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466005" comment="samba3x-doc is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120467" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0467: freetype security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0467-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0467.html" />
      <reference source="CVE" ref_id="CVE-2012-1126" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1126.html" />
      <reference source="CVE" ref_id="CVE-2012-1127" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1127.html" />
      <reference source="CVE" ref_id="CVE-2012-1130" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1130.html" />
      <reference source="CVE" ref_id="CVE-2012-1131" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1131.html" />
      <reference source="CVE" ref_id="CVE-2012-1132" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1132.html" />
      <reference source="CVE" ref_id="CVE-2012-1134" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1134.html" />
      <reference source="CVE" ref_id="CVE-2012-1136" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1136.html" />
      <reference source="CVE" ref_id="CVE-2012-1137" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1137.html" />
      <reference source="CVE" ref_id="CVE-2012-1139" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1139.html" />
      <reference source="CVE" ref_id="CVE-2012-1140" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1140.html" />
      <reference source="CVE" ref_id="CVE-2012-1141" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1141.html" />
      <reference source="CVE" ref_id="CVE-2012-1142" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1142.html" />
      <reference source="CVE" ref_id="CVE-2012-1143" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1143.html" />
      <reference source="CVE" ref_id="CVE-2012-1144" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1144.html" />
    <description>FreeType is a free, high-quality, portable font engine that can open and
manage font files. It also loads, hints, and renders individual glyphs
efficiently.

Multiple flaws were found in the way FreeType handled TrueType Font (TTF),
Glyph Bitmap Distribution Format (BDF), Windows .fnt and .fon, and
PostScript Type 1 fonts. If a specially-crafted font file was loaded by an
application linked against FreeType, it could cause the application to
crash or, potentially, execute arbitrary code with the privileges of the
user running the application. (CVE-2012-1134, CVE-2012-1136, CVE-2012-1142,
CVE-2012-1144)

Multiple flaws were found in the way FreeType handled fonts in various
formats. If a specially-crafted font file was loaded by an application
linked against FreeType, it could cause the application to crash.
(CVE-2012-1126, CVE-2012-1127, CVE-2012-1130, CVE-2012-1131, CVE-2012-1132,
CVE-2012-1137, CVE-2012-1139, CVE-2012-1140, CVE-2012-1141, CVE-2012-1143)

Red Hat would like to thank Mateusz Jurczyk of the Google Security Team for
reporting these issues.

Users are advised to upgrade to these updated packages, which contain a
backported patch to correct these issues. The X server must be restarted
(log out, then log back in) for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-10" />
        <updated date="2012-04-10" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1126.html">CVE-2012-1126</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1127.html">CVE-2012-1127</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1130.html">CVE-2012-1130</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1131.html">CVE-2012-1131</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1132.html">CVE-2012-1132</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1134.html">CVE-2012-1134</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1136.html">CVE-2012-1136</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1137.html">CVE-2012-1137</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1139.html">CVE-2012-1139</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1140.html">CVE-2012-1140</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1141.html">CVE-2012-1141</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1142.html">CVE-2012-1142</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1143.html">CVE-2012-1143</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1144.html">CVE-2012-1144</cve>
        <bugzilla href="http://bugzilla.redhat.com/800581" id="800581">CVE-2012-1126 freetype: heap buffer over-read in BDF parsing _bdf_is_atom() (#35597, #35598)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800583" id="800583">CVE-2012-1127 freetype: heap buffer over-read in BDF parsing _bdf_parse_glyphs() (#35599, #35600)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800587" id="800587">CVE-2012-1130 freetype: heap buffer over-read in PCF parser pcf_get_properties() (#35603)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800589" id="800589">CVE-2012-1131 freetype: incorrect type cast allowing input sanity check bypass in ft_smooth_render_generic() (#35604)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800590" id="800590">CVE-2012-1132 freetype: heap buffer over-read in Type1 parser parse_subrs() (#35606)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800592" id="800592">CVE-2012-1134 freetype: limited heap buffer overflow in Type1 parser T1_Get_Private_Dict() (#35608)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800594" id="800594">CVE-2012-1136 freetype: uninitialized pointer use in BDF parser _bdf_parse_glyphs() (#35641)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800595" id="800595">CVE-2012-1137 freetype: heap buffer off-by-one in BDF parsing _bdf_list_ensure() (#35643)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800598" id="800598">CVE-2012-1139 freetype: data buffer underflow in BDF parser _bdf_parse_glyphs() (#35656)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800600" id="800600">CVE-2012-1140 freetype: multiple buffer over-read in PS parser conversion functions (#35657)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800602" id="800602">CVE-2012-1141 freetype: BDF parser _bdf_list_split() fails to properly initialize field array (#35658)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800604" id="800604">CVE-2012-1142 freetype: incorrect computation of number of glyphs in FNT_Face_Init() for FNT/FON files (#35659)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800606" id="800606">CVE-2012-1143 freetype: integer divide by zero in FT_DivFix() (#35660)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/800607" id="800607">CVE-2012-1144 freetype: insufficient checking of first outline point in TTF parser (#35689)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120467004" comment="freetype-demos is earlier than 0:2.2.1-31.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120467005" comment="freetype-demos is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120467006" comment="freetype-devel is earlier than 0:2.2.1-31.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120467007" comment="freetype-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120467002" comment="freetype is earlier than 0:2.2.1-31.el5_8.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120467003" comment="freetype is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120467016" comment="freetype-demos is earlier than 0:2.3.11-6.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120467017" comment="freetype-demos is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120467014" comment="freetype-devel is earlier than 0:2.3.11-6.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120467015" comment="freetype-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120467012" comment="freetype is earlier than 0:2.3.11-6.el6_2.9" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120467013" comment="freetype is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120468" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0468: libtiff security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0468-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0468.html" />
      <reference source="CVE" ref_id="CVE-2012-1173" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1173.html" />
    <description>The libtiff packages contain a library of functions for manipulating Tagged
Image File Format (TIFF) files.

Two integer overflow flaws, leading to heap-based buffer overflows, were
found in the way libtiff attempted to allocate space for a tile in a TIFF
image file. An attacker could use these flaws to create a specially-crafted
TIFF file that, when opened, would cause an application linked against
libtiff to crash or, possibly, execute arbitrary code. (CVE-2012-1173)

All libtiff users should upgrade to these updated packages, which contain a
backported patch to resolve these issues. All running applications linked
against libtiff must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-10" />
        <updated date="2012-04-10" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1173.html">CVE-2012-1173</cve>
        <bugzilla href="http://bugzilla.redhat.com/803078" id="803078">CVE-2012-1173 libtiff: Heap-buffer overflow due to TileSize calculation when parsing tiff files</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120468004" comment="libtiff-devel is earlier than 0:3.8.2-14.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120468005" comment="libtiff-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120468002" comment="libtiff is earlier than 0:3.8.2-14.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120468003" comment="libtiff is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120468012" comment="libtiff-devel is earlier than 0:3.9.4-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120468013" comment="libtiff-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120468010" comment="libtiff is earlier than 0:3.9.4-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120468011" comment="libtiff is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120468014" comment="libtiff-static is earlier than 0:3.9.4-5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120468015" comment="libtiff-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120469" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0469: acroread security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 5</platform>
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0469-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0469.html" />
      <reference source="CVE" ref_id="CVE-2011-4370" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4370.html" />
      <reference source="CVE" ref_id="CVE-2011-4371" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4371.html" />
      <reference source="CVE" ref_id="CVE-2011-4372" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4372.html" />
      <reference source="CVE" ref_id="CVE-2011-4373" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4373.html" />
      <reference source="CVE" ref_id="CVE-2012-0774" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0774.html" />
      <reference source="CVE" ref_id="CVE-2012-0775" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0775.html" />
      <reference source="CVE" ref_id="CVE-2012-0777" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0777.html" />
    <description>Adobe Reader allows users to view and print documents in Portable Document
Format (PDF).

This update fixes multiple security flaws in Adobe Reader. These flaws are
detailed on the Adobe security page APSB12-08, listed in the References
section. A specially-crafted PDF file could cause Adobe Reader to crash or,
potentially, execute arbitrary code as the user running Adobe Reader when
opened. (CVE-2012-0774, CVE-2012-0775, CVE-2012-0777)

All Adobe Reader users should install these updated packages. They contain
Adobe Reader version 9.5.1, which is not vulnerable to these issues. All
running instances of Adobe Reader must be restarted for the update to take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-10" />
        <updated date="2012-04-10" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4370.html">CVE-2011-4370</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4371.html">CVE-2011-4371</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4372.html">CVE-2011-4372</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4373.html">CVE-2011-4373</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0774.html">CVE-2012-0774</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0775.html">CVE-2012-0775</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0777.html">CVE-2012-0777</cve>
        <bugzilla href="http://bugzilla.redhat.com/810397" id="810397">CVE-2011-4370 CVE-2011-4371 CVE-2011-4372 CVE-2011-4373 CVE-2012-0774 CVE-2012-0775 CVE-2012-0777 acroread: multiple unspecified flaws (APSB12-08, APSB12-01)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120469004" comment="acroread-plugin is earlier than 0:9.5.1-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011005" comment="acroread-plugin is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120469002" comment="acroread is earlier than 0:9.5.1-1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011003" comment="acroread is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120469012" comment="acroread-plugin is earlier than 0:9.5.1-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011013" comment="acroread-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120469010" comment="acroread is earlier than 0:9.5.1-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011011" comment="acroread is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120474" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0474: tomcat5 security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0474-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0474.html" />
      <reference source="CVE" ref_id="CVE-2011-4858" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4858.html" />
      <reference source="CVE" ref_id="CVE-2012-0022" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0022.html" />
    <description>Apache Tomcat is a servlet container for the Java Servlet and JavaServer
Pages (JSP) technologies.

It was found that the Java hashCode() method implementation was susceptible
to predictable hash collisions. A remote attacker could use this flaw to
cause Tomcat to use an excessive amount of CPU time by sending an HTTP
request with a large number of parameters whose names map to the same hash
value. This update introduces a limit on the number of parameters processed
per request to mitigate this issue. The default limit is 512 for
parameters and 128 for headers. These defaults can be changed by setting
the org.apache.tomcat.util.http.Parameters.MAX_COUNT and
org.apache.tomcat.util.http.MimeHeaders.MAX_COUNT system properties.
(CVE-2011-4858)

It was found that Tomcat did not handle large numbers of parameters and
large parameter values efficiently. A remote attacker could make Tomcat
use an excessive amount of CPU time by sending an HTTP request containing a
large number of parameters or large parameter values. This update
introduces limits on the number of parameters and headers processed per
request to address this issue. Refer to the CVE-2011-4858 description for
information about the org.apache.tomcat.util.http.Parameters.MAX_COUNT and
org.apache.tomcat.util.http.MimeHeaders.MAX_COUNT system properties.
(CVE-2012-0022) 

Red Hat would like to thank oCERT for reporting CVE-2011-4858. oCERT
acknowledges Julian Wälde and Alexander Klink as the original reporters of
CVE-2011-4858.

Users of Tomcat should upgrade to these updated packages, which correct
these issues. Tomcat must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-11" />
        <updated date="2012-04-11" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4858.html">CVE-2011-4858</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0022.html">CVE-2012-0022</cve>
        <bugzilla href="http://bugzilla.redhat.com/750521" id="750521">CVE-2011-4858 tomcat: hash table collisions CPU usage DoS (oCERT-2011-003)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783359" id="783359">CVE-2012-0022 tomcat: large number of parameters DoS</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474020" comment="tomcat5-webapps is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474021" comment="tomcat5-webapps is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474014" comment="tomcat5-jasper-javadoc is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474015" comment="tomcat5-jasper-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474008" comment="tomcat5-jsp-2.0-api is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474009" comment="tomcat5-jsp-2.0-api is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474018" comment="tomcat5-servlet-2.4-api is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474019" comment="tomcat5-servlet-2.4-api is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474012" comment="tomcat5-server-lib is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474013" comment="tomcat5-server-lib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474022" comment="tomcat5-common-lib is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474023" comment="tomcat5-common-lib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474016" comment="tomcat5-jsp-2.0-api-javadoc is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474017" comment="tomcat5-jsp-2.0-api-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474010" comment="tomcat5-jasper is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474011" comment="tomcat5-jasper is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474006" comment="tomcat5-admin-webapps is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474007" comment="tomcat5-admin-webapps is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474004" comment="tomcat5-servlet-2.4-api-javadoc is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474005" comment="tomcat5-servlet-2.4-api-javadoc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120474002" comment="tomcat5 is earlier than 0:5.5.23-0jpp.31.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120474003" comment="tomcat5 is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120475" version="504" class="patch">
      <metadata>
        <title>RHSA-2012:0475: tomcat6 security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0475-03" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0475.html" />
      <reference source="CVE" ref_id="CVE-2011-4858" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4858.html" />
      <reference source="CVE" ref_id="CVE-2012-0022" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0022.html" />
    <description>Apache Tomcat is a servlet container for the Java Servlet and JavaServer
Pages (JSP) technologies.

It was found that the Java hashCode() method implementation was susceptible
to predictable hash collisions. A remote attacker could use this flaw to
cause Tomcat to use an excessive amount of CPU time by sending an HTTP
request with a large number of parameters whose names map to the same hash
value. This update introduces a limit on the number of parameters processed
per request to mitigate this issue. The default limit is 512 for
parameters and 128 for headers. These defaults can be changed by setting
the org.apache.tomcat.util.http.Parameters.MAX_COUNT and
org.apache.tomcat.util.http.MimeHeaders.MAX_COUNT system properties.
(CVE-2011-4858)

It was found that Tomcat did not handle large numbers of parameters and
large parameter values efficiently. A remote attacker could make Tomcat
use an excessive amount of CPU time by sending an HTTP request containing a
large number of parameters or large parameter values. This update
introduces limits on the number of parameters and headers processed per
request to address this issue. Refer to the CVE-2011-4858 description for
information about the org.apache.tomcat.util.http.Parameters.MAX_COUNT and
org.apache.tomcat.util.http.MimeHeaders.MAX_COUNT system properties.
(CVE-2012-0022) 

Red Hat would like to thank oCERT for reporting CVE-2011-4858. oCERT
acknowledges Julian Wälde and Alexander Klink as the original reporters of
CVE-2011-4858.

Users of Tomcat should upgrade to these updated packages, which correct
these issues. Tomcat must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-11" />
        <updated date="2012-04-11" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4858.html">CVE-2011-4858</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0022.html">CVE-2012-0022</cve>
        <bugzilla href="http://bugzilla.redhat.com/750521" id="750521">CVE-2011-4858 tomcat: hash table collisions CPU usage DoS (oCERT-2011-003)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783359" id="783359">CVE-2012-0022 tomcat: large number of parameters DoS</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475013" comment="tomcat6-admin-webapps is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475014" comment="tomcat6-admin-webapps is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475007" comment="tomcat6-servlet-2.5-api is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475008" comment="tomcat6-servlet-2.5-api is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475021" comment="tomcat6-webapps is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475022" comment="tomcat6-webapps is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475017" comment="tomcat6-lib is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475018" comment="tomcat6-lib is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475019" comment="tomcat6-javadoc is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475020" comment="tomcat6-javadoc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475009" comment="tomcat6-docs-webapp is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475010" comment="tomcat6-docs-webapp is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475011" comment="tomcat6-el-2.1-api is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475012" comment="tomcat6-el-2.1-api is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475015" comment="tomcat6-jsp-2.1-api is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475016" comment="tomcat6-jsp-2.1-api is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120475005" comment="tomcat6 is earlier than 0:6.0.24-36.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120475006" comment="tomcat6 is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120480" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0480: kernel security, bug fix, and enhancement update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0480-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0480.html" />
      <reference source="CVE" ref_id="CVE-2012-1583" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1583.html" />
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issue:

* A flaw in the xfrm6_tunnel_rcv() function in the Linux kernel's IPv6
implementation could lead to a use-after-free or double free flaw in
tunnel6_rcv(). A remote attacker could use this flaw to send
specially-crafted packets to a target system that is using IPv6 and also
has the xfrm6_tunnel kernel module loaded, causing it to crash.
(CVE-2012-1583, Important)

If you do not run applications that use xfrm6_tunnel, you can prevent the
xfrm6_tunnel module from being loaded by creating (as the root user) a
"/etc/modprobe.d/xfrm6_tunnel.conf" file, and adding the following line to
it:

blacklist xfrm6_tunnel

This way, the xfrm6_tunnel module cannot be loaded accidentally. A reboot
is not necessary for this change to take effect.

This update also fixes various bugs and adds an enhancement. Documentation
for these changes will be available shortly from the Technical Notes
document linked to in the References section.

Users should upgrade to these updated packages, which contain backported
patches to correct this issue, and fix the bugs and add the enhancement
noted in the Technical Notes. The system must be rebooted for this update
to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-17" />
        <updated date="2012-04-17" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1583.html">CVE-2012-1583</cve>
        <bugzilla href="http://bugzilla.redhat.com/752304" id="752304">CVE-2012-1583 kernel: ipv6: panic using raw sockets</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/801726" id="801726">RHEL5.8 NFSv4 regression - "ls" returns "-ENOTDIR" when listing a subdirectory of exported mount [rhel-5.8.z]</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480020" comment="kernel-PAE is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007021" comment="kernel-PAE is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480016" comment="kernel-kdump-devel is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007017" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480008" comment="kernel-debug is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007007" comment="kernel-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480012" comment="kernel-devel is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007013" comment="kernel-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480010" comment="kernel-debug-devel is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007009" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480002" comment="kernel is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007003" comment="kernel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480024" comment="kernel-doc is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007025" comment="kernel-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480014" comment="kernel-xen is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007015" comment="kernel-xen is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480006" comment="kernel-xen-devel is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007011" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480004" comment="kernel-headers is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007005" comment="kernel-headers is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480018" comment="kernel-kdump is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007019" comment="kernel-kdump is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120480022" comment="kernel-PAE-devel is earlier than 0:2.6.18-308.4.1.el5" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120007023" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120481" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0481: kernel security, bug fix, and enhancement update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0481-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0481.html" />
      <reference source="CVE" ref_id="CVE-2012-0879" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0879.html" />
      <reference source="CVE" ref_id="CVE-2012-1090" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1090.html" />
      <reference source="CVE" ref_id="CVE-2012-1097" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1097.html" />
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* Numerous reference count leaks were found in the Linux kernel's block
layer I/O context handling implementation. This could allow a local,
unprivileged user to cause a denial of service. (CVE-2012-0879,
Moderate)

* A flaw was found in the Linux kernel's cifs_lookup() implementation.
POSIX open during lookup should only be supported for regular files. When
non-regular files (for example, a named (FIFO) pipe or other special files)
are opened on lookup, it could cause a denial of service. (CVE-2012-1090,
Moderate)

* It was found that the Linux kernel's register set (regset) common
infrastructure implementation did not check if the required get and set
handlers were initialized. A local, unprivileged user could use this flaw
to cause a denial of service by performing a register set operation with a
ptrace() PTRACE_SETREGSET or PTRACE_GETREGSET request. (CVE-2012-1097,
Moderate)

Red Hat would like to thank H. Peter Anvin for reporting CVE-2012-1097.

This update also fixes several bugs and adds various enhancements.
Documentation for these changes will be available shortly from the
Technical Notes document linked to in the References section.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues, and fix the bugs and add the enhancements
noted in the Technical Notes. The system must be rebooted for this update
to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-17" />
        <updated date="2012-04-17" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0879.html">CVE-2012-0879</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1090.html">CVE-2012-1090</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1097.html">CVE-2012-1097</cve>
        <bugzilla href="http://bugzilla.redhat.com/789373" id="789373">cifs: multiple process stuck waiting for page lock [rhel-6.2.z]</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/796829" id="796829">CVE-2012-0879 kernel: block: CLONE_IO io_context refcounting issues</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/798293" id="798293">CVE-2012-1090 kernel: cifs: dentry refcount leak when opening a FIFO on lookup leads to panic on unmount</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/799209" id="799209">CVE-2012-1097 kernel: regset: Prevent null pointer reference on readonly regsets</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/802379" id="802379">Anomaly in mbind memory map causing Java Hotspot JVM Seg fault with NUMA aware ParallelScavange GC [rhel-6.2.z]</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481011" comment="perf is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052012" comment="perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481025" comment="kernel-firmware is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052026" comment="kernel-firmware is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481023" comment="kernel-kdump-devel is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052024" comment="kernel-kdump-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481017" comment="python-perf is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052014" comment="python-perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481015" comment="kernel-debug is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052020" comment="kernel-debug is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481019" comment="kernel-devel is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052016" comment="kernel-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481013" comment="kernel-debug-devel is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052018" comment="kernel-debug-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481005" comment="kernel is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052006" comment="kernel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481027" comment="kernel-doc is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052028" comment="kernel-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481009" comment="kernel-headers is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052010" comment="kernel-headers is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481021" comment="kernel-kdump is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052022" comment="kernel-kdump is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120481007" comment="kernel-bootwrapper is earlier than 0:2.6.32-220.13.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052008" comment="kernel-bootwrapper is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120508" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0508: java-1.5.0-ibm security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0508-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0508.html" />
      <reference source="CVE" ref_id="CVE-2011-3389" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3389.html" />
      <reference source="CVE" ref_id="CVE-2011-3557" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3557.html" />
      <reference source="CVE" ref_id="CVE-2011-3560" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3560.html" />
      <reference source="CVE" ref_id="CVE-2011-3563" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3563.html" />
      <reference source="CVE" ref_id="CVE-2012-0498" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0498.html" />
      <reference source="CVE" ref_id="CVE-2012-0499" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0499.html" />
      <reference source="CVE" ref_id="CVE-2012-0501" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0501.html" />
      <reference source="CVE" ref_id="CVE-2012-0502" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0502.html" />
      <reference source="CVE" ref_id="CVE-2012-0503" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0503.html" />
      <reference source="CVE" ref_id="CVE-2012-0505" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0505.html" />
      <reference source="CVE" ref_id="CVE-2012-0506" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0506.html" />
      <reference source="CVE" ref_id="CVE-2012-0507" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0507.html" />
    <description>The IBM 1.5.0 Java release includes the IBM Java 2 Runtime Environment and
the IBM Java 2 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 2 Runtime
Environment and the IBM Java 2 Software Development Kit. Detailed
vulnerability descriptions are linked from the IBM "Security alerts" page,
listed in the References section. (CVE-2011-3389, CVE-2011-3557,
CVE-2011-3560, CVE-2011-3563, CVE-2012-0498, CVE-2012-0499, CVE-2012-0501,
CVE-2012-0502, CVE-2012-0503, CVE-2012-0505, CVE-2012-0506, CVE-2012-0507)

All users of java-1.5.0-ibm are advised to upgrade to these updated
packages, containing the IBM 1.5.0 SR13-FP1 Java release. All running
instances of IBM Java must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-23" />
        <updated date="2012-04-23" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3389.html">CVE-2011-3389</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3557.html">CVE-2011-3557</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3560.html">CVE-2011-3560</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3563.html">CVE-2011-3563</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0498.html">CVE-2012-0498</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0499.html">CVE-2012-0499</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0501.html">CVE-2012-0501</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0502.html">CVE-2012-0502</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0503.html">CVE-2012-0503</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0505.html">CVE-2012-0505</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0506.html">CVE-2012-0506</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0507.html">CVE-2012-0507</cve>
        <bugzilla href="http://bugzilla.redhat.com/737506" id="737506">CVE-2011-3389 HTTPS: block-wise chosen-plaintext attack against SSL/TLS (BEAST)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745379" id="745379">CVE-2011-3560 OpenJDK: missing checkSetFactory calls in HttpsURLConnection (JSSE, 7096936)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/745464" id="745464">CVE-2011-3557 OpenJDK: RMI registry privileged code execution (RMI, 7083012)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788624" id="788624">CVE-2012-0501 OpenJDK: off-by-one bug in ZIP reading code (JRE, 7118283)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788976" id="788976">CVE-2012-0503 OpenJDK: unrestricted use of TimeZone.setDefault() (i18n, 7110687)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788994" id="788994">CVE-2012-0507 OpenJDK: AtomicReferenceArray insufficient array type check (Concurrency, 7082299)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789295" id="789295">CVE-2011-3563 OpenJDK: JavaSound incorrect bounds check (Sound, 7088367)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789297" id="789297">CVE-2012-0502 OpenJDK: KeyboardFocusManager focus stealing (AWT, 7110683)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789299" id="789299">CVE-2012-0505 OpenJDK: incomplete info in the deserialization exception (Serialization, 7110700)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789300" id="789300">CVE-2012-0506 OpenJDK: mutable repository identifiers (CORBA, 7110704)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/790720" id="790720">CVE-2012-0498 Oracle JDK: unspecified vulnerability fixed in 6u31 and 7u3 (2D)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/790722" id="790722">CVE-2012-0499 Oracle JDK: unspecified vulnerability fixed in 6u31 and 7u3 (2D)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120508013" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120508014" comment="java-1.5.0-ibm-jdbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120508005" comment="java-1.5.0-ibm is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120508006" comment="java-1.5.0-ibm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120508017" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120508018" comment="java-1.5.0-ibm-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120508015" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120508016" comment="java-1.5.0-ibm-javacomm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120508011" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120508012" comment="java-1.5.0-ibm-demo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120508007" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120508008" comment="java-1.5.0-ibm-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120508009" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120508010" comment="java-1.5.0-ibm-src is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120509" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0509: wireshark security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0509-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0509.html" />
      <reference source="CVE" ref_id="CVE-2011-1143" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1143.html" />
      <reference source="CVE" ref_id="CVE-2011-1590" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1590.html" />
      <reference source="CVE" ref_id="CVE-2011-1957" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1957.html" />
      <reference source="CVE" ref_id="CVE-2011-1958" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1958.html" />
      <reference source="CVE" ref_id="CVE-2011-1959" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-1959.html" />
      <reference source="CVE" ref_id="CVE-2011-2174" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2174.html" />
      <reference source="CVE" ref_id="CVE-2011-2175" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2175.html" />
      <reference source="CVE" ref_id="CVE-2011-2597" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2597.html" />
      <reference source="CVE" ref_id="CVE-2011-2698" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-2698.html" />
      <reference source="CVE" ref_id="CVE-2011-4102" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4102.html" />
      <reference source="CVE" ref_id="CVE-2012-0041" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0041.html" />
      <reference source="CVE" ref_id="CVE-2012-0042" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0042.html" />
      <reference source="CVE" ref_id="CVE-2012-0066" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0066.html" />
      <reference source="CVE" ref_id="CVE-2012-0067" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0067.html" />
      <reference source="CVE" ref_id="CVE-2012-1595" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1595.html" />
    <description>Wireshark is a program for monitoring network traffic. Wireshark was
previously known as Ethereal.

Several flaws were found in Wireshark. If Wireshark read a malformed packet
off a network or opened a malicious dump file, it could crash or, possibly,
execute arbitrary code as the user running Wireshark. (CVE-2011-1590,
CVE-2011-4102, CVE-2012-1595)

Several denial of service flaws were found in Wireshark. Wireshark could
crash or stop responding if it read a malformed packet off a network, or
opened a malicious dump file. (CVE-2011-1143, CVE-2011-1957, CVE-2011-1958,
CVE-2011-1959, CVE-2011-2174, CVE-2011-2175, CVE-2011-2597, CVE-2011-2698,
CVE-2012-0041, CVE-2012-0042, CVE-2012-0067, CVE-2012-0066)

Users of Wireshark should upgrade to these updated packages, which contain
backported patches to correct these issues. All running instances of
Wireshark must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-23" />
        <updated date="2012-04-23" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1143.html">CVE-2011-1143</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1590.html">CVE-2011-1590</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1957.html">CVE-2011-1957</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1958.html">CVE-2011-1958</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-1959.html">CVE-2011-1959</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2174.html">CVE-2011-2174</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2175.html">CVE-2011-2175</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2597.html">CVE-2011-2597</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-2698.html">CVE-2011-2698</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4102.html">CVE-2011-4102</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0041.html">CVE-2012-0041</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0042.html">CVE-2012-0042</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0066.html">CVE-2012-0066</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0067.html">CVE-2012-0067</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1595.html">CVE-2012-1595</cve>
        <bugzilla href="http://bugzilla.redhat.com/681760" id="681760">CVE-2011-1143 Wireshark: Null pointer dereference causing application crash when reading malformed pcap file</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/697741" id="697741">CVE-2011-1590 Wireshark: Use-after-free causes heap-based buffer overflow in X.509if dissector</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/710021" id="710021">CVE-2011-1957 wireshark: Infinite loop in the DICOM dissector</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/710039" id="710039">CVE-2011-1959 wireshark: Stack-based buffer over-read from tvbuff buffer when reading snoop capture files</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/710097" id="710097">CVE-2011-2174 wireshark: Double-free flaw by uncompressing of a zlib compressed packet</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/710109" id="710109">CVE-2011-2175 wireshark: Heap-based buffer over-read in Visual Networks dissector</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/710184" id="710184">CVE-2011-1958 wireshark (64bit): NULL pointer dereference by processing of a corrupted Diameter dictionary file</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/719753" id="719753">CVE-2011-2597 wireshark: infinite loop DoS in lucent/ascend file parser</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/723215" id="723215">CVE-2011-2698 wireshark: Infinite loop in the ANSI A Interface (IS-634/IOS) dissector</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/750648" id="750648">CVE-2011-4102 wireshark: buffer overflow in the ERF file reader</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/773726" id="773726">CVE-2012-0041 wireshark: multiple file parser vulnerabilities (wnpa-sec-2012-01)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/773728" id="773728">CVE-2012-0042 wireshark: NULL pointer vulnerabilities (wnpa-sec-2012-02)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783360" id="783360">CVE-2012-0066 Wireshark: Dos via large buffer allocation request</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/783363" id="783363">CVE-2012-0067 Wireshark: Dos due to integer overflow in IPTrace capture format parser</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/807644" id="807644">CVE-2012-1595 wireshark: Heap-based buffer overflow when reading ERF packets from pcap/pcap-ng trace files</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120509005" comment="wireshark is earlier than 0:1.2.15-2.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120509006" comment="wireshark is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120509009" comment="wireshark-devel is earlier than 0:1.2.15-2.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120509010" comment="wireshark-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120509007" comment="wireshark-gnome is earlier than 0:1.2.15-2.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120509008" comment="wireshark-gnome is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120514" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0514: java-1.6.0-ibm security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0514-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0514.html" />
      <reference source="CVE" ref_id="CVE-2011-3563" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3563.html" />
      <reference source="CVE" ref_id="CVE-2011-5035" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-5035.html" />
      <reference source="CVE" ref_id="CVE-2012-0497" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0497.html" />
      <reference source="CVE" ref_id="CVE-2012-0498" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0498.html" />
      <reference source="CVE" ref_id="CVE-2012-0499" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0499.html" />
      <reference source="CVE" ref_id="CVE-2012-0500" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0500.html" />
      <reference source="CVE" ref_id="CVE-2012-0501" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0501.html" />
      <reference source="CVE" ref_id="CVE-2012-0502" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0502.html" />
      <reference source="CVE" ref_id="CVE-2012-0503" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0503.html" />
      <reference source="CVE" ref_id="CVE-2012-0505" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0505.html" />
      <reference source="CVE" ref_id="CVE-2012-0506" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0506.html" />
      <reference source="CVE" ref_id="CVE-2012-0507" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0507.html" />
    <description>The IBM Java SE version 6 release includes the IBM Java 6 Runtime
Environment and the IBM Java 6 Software Development Kit.

This update fixes several vulnerabilities in the IBM Java 6 Runtime
Environment and the IBM Java 6 Software Development Kit. Detailed
vulnerability descriptions are linked from the IBM "Security alerts" page,
listed in the References section. (CVE-2011-3563, CVE-2011-5035,
CVE-2012-0497, CVE-2012-0498, CVE-2012-0499, CVE-2012-0500, CVE-2012-0501,
CVE-2012-0502, CVE-2012-0503, CVE-2012-0505, CVE-2012-0506, CVE-2012-0507)

All users of java-1.6.0-ibm are advised to upgrade to these updated
packages, containing the IBM Java 6 SR10-FP1 release. All running instances
of IBM Java must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-24" />
        <updated date="2012-04-24" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3563.html">CVE-2011-3563</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-5035.html">CVE-2011-5035</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0497.html">CVE-2012-0497</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0498.html">CVE-2012-0498</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0499.html">CVE-2012-0499</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0500.html">CVE-2012-0500</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0501.html">CVE-2012-0501</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0502.html">CVE-2012-0502</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0503.html">CVE-2012-0503</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0505.html">CVE-2012-0505</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0506.html">CVE-2012-0506</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0507.html">CVE-2012-0507</cve>
        <bugzilla href="http://bugzilla.redhat.com/788606" id="788606">CVE-2011-5035 OpenJDK: HttpServer no header count limit (Lightweight HTTP Server, 7126960)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788624" id="788624">CVE-2012-0501 OpenJDK: off-by-one bug in ZIP reading code (JRE, 7118283)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788976" id="788976">CVE-2012-0503 OpenJDK: unrestricted use of TimeZone.setDefault() (i18n, 7110687)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/788994" id="788994">CVE-2012-0507 OpenJDK: AtomicReferenceArray insufficient array type check (Concurrency, 7082299)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789295" id="789295">CVE-2011-3563 OpenJDK: JavaSound incorrect bounds check (Sound, 7088367)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789297" id="789297">CVE-2012-0502 OpenJDK: KeyboardFocusManager focus stealing (AWT, 7110683)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789299" id="789299">CVE-2012-0505 OpenJDK: incomplete info in the deserialization exception (Serialization, 7110700)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789300" id="789300">CVE-2012-0506 OpenJDK: mutable repository identifiers (CORBA, 7110704)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789301" id="789301">CVE-2012-0497 OpenJDK: insufficient checking of the graphics rendering object (2D, 7112642)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/790720" id="790720">CVE-2012-0498 Oracle JDK: unspecified vulnerability fixed in 6u31 and 7u3 (2D)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/790722" id="790722">CVE-2012-0499 Oracle JDK: unspecified vulnerability fixed in 6u31 and 7u3 (2D)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/790724" id="790724">CVE-2012-0500 Oracle JDK: unspecified vulnerability fixed in 6u31 and 7u3 (Deployment)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120514007" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034025" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120514005" comment="java-1.6.0-ibm is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034023" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120514009" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034031" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120514017" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034033" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120514013" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034035" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120514015" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034029" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120514011" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120034027" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120515" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0515: firefox security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0515-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0515.html" />
      <reference source="CVE" ref_id="CVE-2011-3062" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3062.html" />
      <reference source="CVE" ref_id="CVE-2012-0467" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0467.html" />
      <reference source="CVE" ref_id="CVE-2012-0468" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0468.html" />
      <reference source="CVE" ref_id="CVE-2012-0469" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0469.html" />
      <reference source="CVE" ref_id="CVE-2012-0470" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0470.html" />
      <reference source="CVE" ref_id="CVE-2012-0471" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0471.html" />
      <reference source="CVE" ref_id="CVE-2012-0472" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0472.html" />
      <reference source="CVE" ref_id="CVE-2012-0473" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0473.html" />
      <reference source="CVE" ref_id="CVE-2012-0474" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0474.html" />
      <reference source="CVE" ref_id="CVE-2012-0477" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0477.html" />
      <reference source="CVE" ref_id="CVE-2012-0478" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0478.html" />
      <reference source="CVE" ref_id="CVE-2012-0479" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0479.html" />
    <description>Mozilla Firefox is an open source web browser. XULRunner provides the XUL
Runtime environment for Mozilla Firefox.

A flaw was found in Sanitiser for OpenType (OTS), used by Firefox to help
prevent potential exploits in malformed OpenType fonts. A web page
containing malicious content could cause Firefox to crash or, under certain
conditions, possibly execute arbitrary code with the privileges of the user
running Firefox. (CVE-2011-3062)

A web page containing malicious content could cause Firefox to crash or,
potentially, execute arbitrary code with the privileges of the user running
Firefox. (CVE-2012-0467, CVE-2012-0468, CVE-2012-0469)

A web page containing a malicious Scalable Vector Graphics (SVG) image file
could cause Firefox to crash or, potentially, execute arbitrary code with
the privileges of the user running Firefox. (CVE-2012-0470)

A flaw was found in the way Firefox used its embedded Cairo library to
render certain fonts. A web page containing malicious content could cause
Firefox to crash or, under certain conditions, possibly execute arbitrary
code with the privileges of the user running Firefox. (CVE-2012-0472)

A flaw was found in the way Firefox rendered certain images using WebGL. A
web page containing malicious content could cause Firefox to crash or,
under certain conditions, possibly execute arbitrary code with the
privileges of the user running Firefox. (CVE-2012-0478)

A cross-site scripting (XSS) flaw was found in the way Firefox handled
certain multibyte character sets. A web page containing malicious content
could cause Firefox to run JavaScript code with the permissions of a
different website. (CVE-2012-0471)

A flaw was found in the way Firefox rendered certain graphics using WebGL.
A web page containing malicious content could cause Firefox to crash.
(CVE-2012-0473)

A flaw in Firefox allowed the address bar to display a different website
than the one the user was visiting. An attacker could use this flaw to
conceal a malicious URL, possibly tricking a user into believing they are
viewing a trusted site, or allowing scripts to be loaded from the
attacker's site, possibly leading to cross-site scripting (XSS) attacks.
(CVE-2012-0474)

A flaw was found in the way Firefox decoded the ISO-2022-KR and ISO-2022-CN
character sets. A web page containing malicious content could cause Firefox
to run JavaScript code with the permissions of a different website.
(CVE-2012-0477)

A flaw was found in the way Firefox handled RSS and Atom feeds. Invalid
RSS or Atom content loaded over HTTPS caused Firefox to display the
address of said content in the location bar, but not the content in the
main window. The previous content continued to be displayed. An attacker
could use this flaw to perform phishing attacks, or trick users into
thinking they are visiting the site reported by the location bar, when the
page is actually content controlled by an attacker. (CVE-2012-0479)

For technical details regarding these flaws, refer to the Mozilla security
advisories for Firefox 10.0.4 ESR. You can find a link to the Mozilla
advisories in the References section of this erratum.

Red Hat would like to thank the Mozilla project for reporting these issues.
Upstream acknowledges Mateusz Jurczyk of the Google Security Team as the
original reporter of CVE-2011-3062; Aki Helin from OUSPG as the original
reporter of CVE-2012-0469; Atte Kettunen from OUSPG as the original
reporter of CVE-2012-0470; wushi of team509 via iDefense as the original
reporter of CVE-2012-0472; Ms2ger as the original reporter of
CVE-2012-0478; Anne van Kesteren of Opera Software as the original reporter
of CVE-2012-0471; Matias Juntunen as the original reporter of
CVE-2012-0473; Jordi Chancel and Eddy Bordi, and Chris McGowen as the
original reporters of CVE-2012-0474; Masato Kinugawa as the original
reporter of CVE-2012-0477; and Jeroen van der Gun as the original reporter
of CVE-2012-0479.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-24" />
        <updated date="2012-04-24" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3062.html">CVE-2011-3062</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0467.html">CVE-2012-0467</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0468.html">CVE-2012-0468</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0469.html">CVE-2012-0469</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0470.html">CVE-2012-0470</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0471.html">CVE-2012-0471</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0472.html">CVE-2012-0472</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0473.html">CVE-2012-0473</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0474.html">CVE-2012-0474</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0477.html">CVE-2012-0477</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0478.html">CVE-2012-0478</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0479.html">CVE-2012-0479</cve>
        <bugzilla href="http://bugzilla.redhat.com/815000" id="815000">CVE-2012-0467 CVE-2012-0468 Mozilla: Miscellaneous memory safety hazards (rv:12.0/ rv:10.0.4) (MFSA 2012-20)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815019" id="815019">CVE-2012-0469 Mozilla: use-after-free in IDBKeyRange (MFSA 2012-22)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815020" id="815020">CVE-2012-0470 Mozilla: Invalid frees causes heap corruption in gfxImageSurface  (MFSA 2012-23)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815021" id="815021">CVE-2012-0471 Mozilla: Potential XSS via multibyte content processing errors (MFSA 2012-24)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815022" id="815022">CVE-2012-0472 Mozilla: Potential memory corruption during font rendering using cairo-dwrite (MFSA 2012-25)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815023" id="815023">CVE-2012-0473 Mozilla: WebGL.drawElements may read illegal video memory due to FindMaxUshortElement error (MFSA 2012-26)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815024" id="815024">CVE-2012-0474 Mozilla: Page load short-circuit can lead to XSS (MFSA 2012-27)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815026" id="815026">CVE-2012-0477 Mozilla: Potential XSS through ISO-2022-KR/ISO-2022-CN decoding issues (MFSA 2012-29)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815037" id="815037">CVE-2012-0478 Mozilla: Crash with WebGL content using textImage2D (MFSA 2012-30)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815042" id="815042">CVE-2011-3062 Mozilla: Off-by-one error in OpenType Sanitizer (MFSA 2012-31)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815044" id="815044">CVE-2012-0479 Mozilla: Potential site identity spoofing when loading RSS and Atom feeds (MFSA 2012-33)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120515004" comment="xulrunner-devel is earlier than 0:10.0.4-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079018" comment="xulrunner-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120515002" comment="xulrunner is earlier than 0:10.0.4-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079016" comment="xulrunner is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120515006" comment="firefox is earlier than 0:10.0.4-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079020" comment="firefox is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120515014" comment="xulrunner-devel is earlier than 0:10.0.4-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079008" comment="xulrunner-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120515012" comment="xulrunner is earlier than 0:10.0.4-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079006" comment="xulrunner is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120515016" comment="firefox is earlier than 0:10.0.4-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120079010" comment="firefox is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120516" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0516: thunderbird security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0516-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0516.html" />
      <reference source="CVE" ref_id="CVE-2011-3062" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3062.html" />
      <reference source="CVE" ref_id="CVE-2012-0467" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0467.html" />
      <reference source="CVE" ref_id="CVE-2012-0468" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0468.html" />
      <reference source="CVE" ref_id="CVE-2012-0469" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0469.html" />
      <reference source="CVE" ref_id="CVE-2012-0470" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0470.html" />
      <reference source="CVE" ref_id="CVE-2012-0471" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0471.html" />
      <reference source="CVE" ref_id="CVE-2012-0472" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0472.html" />
      <reference source="CVE" ref_id="CVE-2012-0473" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0473.html" />
      <reference source="CVE" ref_id="CVE-2012-0474" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0474.html" />
      <reference source="CVE" ref_id="CVE-2012-0477" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0477.html" />
      <reference source="CVE" ref_id="CVE-2012-0478" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0478.html" />
      <reference source="CVE" ref_id="CVE-2012-0479" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0479.html" />
    <description>Mozilla Thunderbird is a standalone mail and newsgroup client.

A flaw was found in Sanitiser for OpenType (OTS), used by Thunderbird to
help prevent potential exploits in malformed OpenType fonts. Malicious
content could cause Thunderbird to crash or, under certain conditions,
possibly execute arbitrary code with the privileges of the user running
Thunderbird. (CVE-2011-3062)

Malicious content could cause Thunderbird to crash or, potentially, execute
arbitrary code with the privileges of the user running Thunderbird.
(CVE-2012-0467, CVE-2012-0468, CVE-2012-0469)

Content containing a malicious Scalable Vector Graphics (SVG) image file
could cause Thunderbird to crash or, potentially, execute arbitrary code
with the privileges of the user running Thunderbird. (CVE-2012-0470)

A flaw was found in the way Thunderbird used its embedded Cairo library to
render certain fonts. Malicious content could cause Thunderbird to crash
or, under certain conditions, possibly execute arbitrary code with the
privileges of the user running Thunderbird. (CVE-2012-0472)

A flaw was found in the way Thunderbird rendered certain images using
WebGL. Malicious content could cause Thunderbird to crash or, under certain
conditions, possibly execute arbitrary code with the privileges of the user
running Thunderbird. (CVE-2012-0478)

A cross-site scripting (XSS) flaw was found in the way Thunderbird handled
certain multibyte character sets. Malicious content could cause Thunderbird
to run JavaScript code with the permissions of different content.
(CVE-2012-0471)

A flaw was found in the way Thunderbird rendered certain graphics using
WebGL. Malicious content could cause Thunderbird to crash. (CVE-2012-0473)

A flaw in the built-in feed reader in Thunderbird allowed the Website field
to display the address of different content than the content the user was
visiting. An attacker could use this flaw to conceal a malicious URL,
possibly tricking a user into believing they are viewing a trusted site, or
allowing scripts to be loaded from the attacker's site, possibly leading to
cross-site scripting (XSS) attacks. (CVE-2012-0474)

A flaw was found in the way Thunderbird decoded the ISO-2022-KR and
ISO-2022-CN character sets. Malicious content could cause Thunderbird
to run JavaScript code with the permissions of different content.
(CVE-2012-0477)

A flaw was found in the way the built-in feed reader in Thunderbird handled
RSS and Atom feeds. Invalid RSS or Atom content loaded over HTTPS caused
Thunderbird to display the address of said content, but not the content.
The previous content continued to be displayed. An attacker could use this
flaw to perform phishing attacks, or trick users into thinking they are
visiting the site reported by the Website field, when the page is actually
content controlled by an attacker. (CVE-2012-0479)

Red Hat would like to thank the Mozilla project for reporting these issues.
Upstream acknowledges Mateusz Jurczyk of the Google Security Team as the
original reporter of CVE-2011-3062; Aki Helin from OUSPG as the original
reporter of CVE-2012-0469; Atte Kettunen from OUSPG as the original
reporter of CVE-2012-0470; wushi of team509 via iDefense as the original
reporter of CVE-2012-0472; Ms2ger as the original reporter of
CVE-2012-0478; Anne van Kesteren of Opera Software as the original reporter
of CVE-2012-0471; Matias Juntunen as the original reporter of
CVE-2012-0473; Jordi Chancel and Eddy Bordi, and Chris McGowen as the
original reporters of CVE-2012-0474; Masato Kinugawa as the original
reporter of CVE-2012-0477; and Jeroen van der Gun as the original reporter
of CVE-2012-0479.

Note: All issues except CVE-2012-0470, CVE-2012-0472, and CVE-2011-3062
cannot be exploited by a specially-crafted HTML mail message as JavaScript
is disabled by default for mail messages. It could be exploited another way
in Thunderbird, for example, when viewing the full remote content of an
RSS feed.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-24" />
        <updated date="2012-04-24" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3062.html">CVE-2011-3062</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0467.html">CVE-2012-0467</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0468.html">CVE-2012-0468</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0469.html">CVE-2012-0469</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0470.html">CVE-2012-0470</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0471.html">CVE-2012-0471</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0472.html">CVE-2012-0472</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0473.html">CVE-2012-0473</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0474.html">CVE-2012-0474</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0477.html">CVE-2012-0477</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0478.html">CVE-2012-0478</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0479.html">CVE-2012-0479</cve>
        <bugzilla href="http://bugzilla.redhat.com/815000" id="815000">CVE-2012-0467 CVE-2012-0468 Mozilla: Miscellaneous memory safety hazards (rv:12.0/ rv:10.0.4) (MFSA 2012-20)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815019" id="815019">CVE-2012-0469 Mozilla: use-after-free in IDBKeyRange (MFSA 2012-22)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815020" id="815020">CVE-2012-0470 Mozilla: Invalid frees causes heap corruption in gfxImageSurface  (MFSA 2012-23)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815021" id="815021">CVE-2012-0471 Mozilla: Potential XSS via multibyte content processing errors (MFSA 2012-24)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815022" id="815022">CVE-2012-0472 Mozilla: Potential memory corruption during font rendering using cairo-dwrite (MFSA 2012-25)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815023" id="815023">CVE-2012-0473 Mozilla: WebGL.drawElements may read illegal video memory due to FindMaxUshortElement error (MFSA 2012-26)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815024" id="815024">CVE-2012-0474 Mozilla: Page load short-circuit can lead to XSS (MFSA 2012-27)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815026" id="815026">CVE-2012-0477 Mozilla: Potential XSS through ISO-2022-KR/ISO-2022-CN decoding issues (MFSA 2012-29)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815037" id="815037">CVE-2012-0478 Mozilla: Crash with WebGL content using textImage2D (MFSA 2012-30)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815042" id="815042">CVE-2011-3062 Mozilla: Off-by-one error in OpenType Sanitizer (MFSA 2012-31)</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/815044" id="815044">CVE-2012-0479 Mozilla: Potential site identity spoofing when loading RSS and Atom feeds (MFSA 2012-33)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
        <cpe>cpe:/a:redhat:rhel_productivity</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120516002" comment="thunderbird is earlier than 0:10.0.4-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120085006" comment="thunderbird is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120516008" comment="thunderbird is earlier than 0:10.0.4-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120080006" comment="thunderbird is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120518" version="503" class="patch">
      <metadata>
        <title>RHSA-2012:0518: openssl security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0518-02" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0518.html" />
      <reference source="CVE" ref_id="CVE-2012-2110" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-2110.html" />
    <description>OpenSSL is a toolkit that implements the Secure Sockets Layer (SSL v2/v3)
and Transport Layer Security (TLS v1) protocols, as well as a
full-strength, general purpose cryptography library.

Multiple numeric conversion errors, leading to a buffer overflow, were
found in the way OpenSSL parsed ASN.1 (Abstract Syntax Notation One) data
from BIO (OpenSSL's I/O abstraction) inputs. Specially-crafted DER
(Distinguished Encoding Rules) encoded data read from a file or other BIO
input could cause an application using the OpenSSL library to crash or,
potentially, execute arbitrary code. (CVE-2012-2110)

All OpenSSL users should upgrade to these updated packages, which contain
a backported patch to resolve this issue. For the update to take effect,
all services linked to the OpenSSL library must be restarted, or the system
rebooted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-24" />
        <updated date="2012-04-24" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-2110.html">CVE-2012-2110</cve>
        <bugzilla href="http://bugzilla.redhat.com/814185" id="814185">CVE-2012-2110 openssl: asn1_d2i_read_bio integer errors leading to buffer overflow</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518002" comment="openssl is earlier than 0:0.9.8e-22.el5_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060003" comment="openssl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518006" comment="openssl-perl is earlier than 0:0.9.8e-22.el5_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060005" comment="openssl-perl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518004" comment="openssl-devel is earlier than 0:0.9.8e-22.el5_8.3" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120060007" comment="openssl-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518008" comment="openssl097a is earlier than 0:0.9.7a-11.el5_8.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120518009" comment="openssl097a is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518014" comment="openssl is earlier than 0:1.0.0-20.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059006" comment="openssl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518020" comment="openssl-static is earlier than 0:1.0.0-20.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059012" comment="openssl-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518018" comment="openssl-perl is earlier than 0:1.0.0-20.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059008" comment="openssl-perl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518016" comment="openssl-devel is earlier than 0:1.0.0-20.el6_2.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120059010" comment="openssl-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120518022" comment="openssl098e is earlier than 0:0.9.8e-17.el6_2.2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120518023" comment="openssl098e is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120523" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0523: libpng security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0523-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0523.html" />
      <reference source="CVE" ref_id="CVE-2011-3048" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-3048.html" />
    <description>The libpng packages contain a library of functions for creating and
manipulating PNG (Portable Network Graphics) image format files.

A heap-based buffer overflow flaw was found in the way libpng processed
tEXt chunks in PNG image files. An attacker could create a
specially-crafted PNG image file that, when opened, could cause an
application using libpng to crash or, possibly, execute arbitrary code with
the privileges of the user running the application. (CVE-2011-3048)

Users of libpng should upgrade to these updated packages, which correct
this issue. For Red Hat Enterprise Linux 5, they contain a backported
patch. For Red Hat Enterprise Linux 6, they upgrade libpng to version
1.2.49. All running applications using libpng must be restarted for the
update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-25" />
        <updated date="2012-04-25" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-3048.html">CVE-2011-3048</cve>
        <bugzilla href="http://bugzilla.redhat.com/808139" id="808139">CVE-2011-3048 libpng: memory corruption flaw</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120523004" comment="libpng-devel is earlier than 2:1.2.10-17.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317024" comment="libpng-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120523002" comment="libpng is earlier than 2:1.2.10-17.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317022" comment="libpng is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120523012" comment="libpng-devel is earlier than 2:1.2.49-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317008" comment="libpng-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120523010" comment="libpng is earlier than 2:1.2.49-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317006" comment="libpng is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120523014" comment="libpng-static is earlier than 2:1.2.49-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120317010" comment="libpng-static is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120533" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0533: samba and samba3x security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0533-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0533.html" />
      <reference source="CVE" ref_id="CVE-2012-2111" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-2111.html" />
    <description>Samba is an open-source implementation of the Server Message Block (SMB) or
Common Internet File System (CIFS) protocol, which allows PC-compatible
machines to share files, printers, and other information.

A flaw was found in the way Samba handled certain Local Security Authority
(LSA) Remote Procedure Calls (RPC). An authenticated user could use this
flaw to issue an RPC call that would modify the privileges database on the
Samba server, allowing them to steal the ownership of files and directories
that are being shared by the Samba server, and create, delete, and modify
user accounts, as well as other Samba server administration tasks.
(CVE-2012-2111)

Red Hat would like to thank the Samba project for reporting this issue.
Upstream acknowledges Ivano Cristofolini as the original reporter.

Users of Samba are advised to upgrade to these updated packages, which
contain a backported patch to resolve this issue. After installing this
update, the smb service will be restarted automatically.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-04-30" />
        <updated date="2012-04-30" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-2111.html">CVE-2012-2111</cve>
        <bugzilla href="http://bugzilla.redhat.com/813569" id="813569">CVE-2012-2111 samba: Incorrect permission checks when granting/removing privileges</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533016" comment="samba3x-winbind-devel is earlier than 0:3.5.10-0.109.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466009" comment="samba3x-winbind-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533012" comment="samba3x-client is earlier than 0:3.5.10-0.109.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466011" comment="samba3x-client is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533014" comment="samba3x-winbind is earlier than 0:3.5.10-0.109.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466017" comment="samba3x-winbind is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533006" comment="samba3x-swat is earlier than 0:3.5.10-0.109.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466015" comment="samba3x-swat is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533004" comment="samba3x-common is earlier than 0:3.5.10-0.109.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466013" comment="samba3x-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533010" comment="samba3x-domainjoin-gui is earlier than 0:3.5.10-0.109.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466007" comment="samba3x-domainjoin-gui is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533008" comment="samba3x-doc is earlier than 0:3.5.10-0.109.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466005" comment="samba3x-doc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533002" comment="samba3x is earlier than 0:3.5.10-0.109.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120466003" comment="samba3x is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533040" comment="samba-doc is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465031" comment="samba-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533034" comment="samba-client is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465037" comment="samba-client is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533024" comment="libsmbclient is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465035" comment="libsmbclient is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533022" comment="samba is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465019" comment="samba is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533036" comment="samba-winbind-devel is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465023" comment="samba-winbind-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533042" comment="libsmbclient-devel is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465025" comment="libsmbclient-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533038" comment="samba-domainjoin-gui is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465027" comment="samba-domainjoin-gui is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533030" comment="samba-swat is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465033" comment="samba-swat is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533044" comment="samba-common is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465039" comment="samba-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533026" comment="samba-winbind-krb5-locator is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465021" comment="samba-winbind-krb5-locator is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533032" comment="samba-winbind-clients is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465029" comment="samba-winbind-clients is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120533028" comment="samba-winbind is earlier than 0:3.5.10-116.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120465041" comment="samba-winbind is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120544" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0544: ImageMagick security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0544-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0544.html" />
      <reference source="CVE" ref_id="CVE-2010-4167" ref_url="https://www.redhat.com/security/data/cve/CVE-2010-4167.html" />
      <reference source="CVE" ref_id="CVE-2012-0247" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0247.html" />
      <reference source="CVE" ref_id="CVE-2012-0248" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0248.html" />
      <reference source="CVE" ref_id="CVE-2012-0259" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0259.html" />
      <reference source="CVE" ref_id="CVE-2012-0260" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0260.html" />
      <reference source="CVE" ref_id="CVE-2012-1798" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1798.html" />
    <description>ImageMagick is an image display and manipulation tool for the X Window
System that can read and write multiple image formats.

A flaw was found in the way ImageMagick processed images with malformed
Exchangeable image file format (Exif) metadata. An attacker could create a
specially-crafted image file that, when opened by a victim, would cause
ImageMagick to crash or, potentially, execute arbitrary code.
(CVE-2012-0247)

A denial of service flaw was found in the way ImageMagick processed images
with malformed Exif metadata. An attacker could create a specially-crafted
image file that, when opened by a victim, could cause ImageMagick to enter
an infinite loop. (CVE-2012-0248)

It was found that ImageMagick utilities tried to load ImageMagick
configuration files from the current working directory. If a user ran an
ImageMagick utility in an attacker-controlled directory containing a
specially-crafted ImageMagick configuration file, it could cause the
utility to execute arbitrary code. (CVE-2010-4167)

An integer overflow flaw was found in the way ImageMagick processed
certain Exif tags with a large components count. An attacker could create
a specially-crafted image file that, when opened by a victim, could cause
ImageMagick to access invalid memory and crash. (CVE-2012-0259)

A denial of service flaw was found in the way ImageMagick decoded certain
JPEG images. A remote attacker could provide a JPEG image with
specially-crafted sequences of RST0 up to RST7 restart markers (used to
indicate the input stream to be corrupted), which once processed by
ImageMagick, would cause it to consume excessive amounts of memory and CPU
time. (CVE-2012-0260)

An out-of-bounds buffer read flaw was found in the way ImageMagick
processed certain TIFF image files. A remote attacker could provide a TIFF
image with a specially-crafted Exif IFD value (the set of tags for
recording Exif-specific attribute information), which once opened by
ImageMagick, would cause it to crash. (CVE-2012-1798)

Red Hat would like to thank CERT-FI for reporting CVE-2012-0259,
CVE-2012-0260, and CVE-2012-1798. CERT-FI acknowledges Aleksis Kauppinen,
Joonas Kuorilehto, Tuomas Parttimaa and Lasse Ylivainio of Codenomicon's
CROSS project as the original reporters.

Users of ImageMagick are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. All running
instances of ImageMagick must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-07" />
        <updated date="2012-05-07" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2010-4167.html">CVE-2010-4167</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0247.html">CVE-2012-0247</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0248.html">CVE-2012-0248</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0259.html">CVE-2012-0259</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0260.html">CVE-2012-0260</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1798.html">CVE-2012-1798</cve>
        <bugzilla href="http://bugzilla.redhat.com/652860" id="652860">CVE-2010-4167 ImageMagick: configuration files read from $CWD may allow arbitrary code execution</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/789443" id="789443">CVE-2012-0247 CVE-2012-0248 ImageMagick: invalid validation of images denial of service</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/807993" id="807993">CVE-2012-0259 ImageMagick: Out-of heap-based buffer read by processing crafted JPEG EXIF header tag value</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/807994" id="807994">CVE-2012-0260 ImageMagick: excessive CPU use DoS by processing JPEG images with crafted restart markers</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/807997" id="807997">CVE-2012-1798 ImageMagick: Out-of-bounds buffer read by copying image bytes for TIFF images with crafted TIFF EXIF IFD value</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120544009" comment="ImageMagick-devel is earlier than 0:6.5.4.7-6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120544010" comment="ImageMagick-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120544011" comment="ImageMagick-doc is earlier than 0:6.5.4.7-6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120544012" comment="ImageMagick-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120544013" comment="ImageMagick-c++ is earlier than 0:6.5.4.7-6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120544014" comment="ImageMagick-c++ is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120544015" comment="ImageMagick-c++-devel is earlier than 0:6.5.4.7-6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120544016" comment="ImageMagick-c++-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120544005" comment="ImageMagick is earlier than 0:6.5.4.7-6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120544006" comment="ImageMagick is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120544007" comment="ImageMagick-perl is earlier than 0:6.5.4.7-6.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120544008" comment="ImageMagick-perl is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120545" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0545: ImageMagick security and bug fix update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0545-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0545.html" />
      <reference source="CVE" ref_id="CVE-2012-0247" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0247.html" />
      <reference source="CVE" ref_id="CVE-2012-0248" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0248.html" />
      <reference source="CVE" ref_id="CVE-2012-0260" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0260.html" />
    <description>ImageMagick is an image display and manipulation tool for the X Window
System that can read and write multiple image formats.

A flaw was found in the way ImageMagick processed images with malformed
Exchangeable image file format (Exif) metadata. An attacker could create a
specially-crafted image file that, when opened by a victim, would cause
ImageMagick to crash or, potentially, execute arbitrary code.
(CVE-2012-0247)

A denial of service flaw was found in the way ImageMagick processed images
with malformed Exif metadata. An attacker could create a specially-crafted
image file that, when opened by a victim, could cause ImageMagick to enter
an infinite loop. (CVE-2012-0248)

A denial of service flaw was found in the way ImageMagick decoded certain
JPEG images. A remote attacker could provide a JPEG image with
specially-crafted sequences of RST0 up to RST7 restart markers (used to
indicate the input stream to be corrupted), which once processed by
ImageMagick, would cause it to consume excessive amounts of memory and CPU
time. (CVE-2012-0260)

Red Hat would like to thank CERT-FI for reporting CVE-2012-0260. CERT-FI
acknowledges Aleksis Kauppinen, Joonas Kuorilehto, Tuomas Parttimaa and
Lasse Ylivainio of Codenomicon's CROSS project as the original reporters.

This update also fixes the following bug:

* The fix for Red Hat Bugzilla bug 694922, provided by the RHSA-2012:0301
ImageMagick update, introduced a regression. Attempting to use the
"convert" utility to convert a PostScript document could fail with a
"/undefinedfilename" error. With this update, conversion works as expected.
(BZ#804546)

Users of ImageMagick are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. All running
instances of ImageMagick must be restarted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-07" />
        <updated date="2012-05-07" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0247.html">CVE-2012-0247</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0248.html">CVE-2012-0248</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0260.html">CVE-2012-0260</cve>
        <bugzilla href="http://bugzilla.redhat.com/789443" id="789443">CVE-2012-0247 CVE-2012-0248 ImageMagick: invalid validation of images denial of service</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/807994" id="807994">CVE-2012-0260 ImageMagick: excessive CPU use DoS by processing JPEG images with crafted restart markers</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120545010" comment="ImageMagick-devel is earlier than 0:6.2.8.0-15.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301007" comment="ImageMagick-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120545008" comment="ImageMagick-c++ is earlier than 0:6.2.8.0-15.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301009" comment="ImageMagick-c++ is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120545004" comment="ImageMagick-c++-devel is earlier than 0:6.2.8.0-15.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301011" comment="ImageMagick-c++-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120545002" comment="ImageMagick is earlier than 0:6.2.8.0-15.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301003" comment="ImageMagick is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120545006" comment="ImageMagick-perl is earlier than 0:6.2.8.0-15.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120301005" comment="ImageMagick-perl is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120546" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0546: php security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0546-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0546.html" />
      <reference source="CVE" ref_id="CVE-2012-1823" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1823.html" />
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

A flaw was found in the way the php-cgi executable processed command line
arguments when running in CGI mode. A remote attacker could send a
specially-crafted request to a PHP script that would result in the query
string being parsed by php-cgi as command line options and arguments. This
could lead to the disclosure of the script's source code or arbitrary code
execution with the privileges of the PHP interpreter. (CVE-2012-1823)

Red Hat is aware that a public exploit for this issue is available that
allows remote code execution in affected PHP CGI configurations. This flaw
does not affect the default configuration in Red Hat Enterprise Linux 5 and
6 using the PHP module for Apache httpd to handle PHP scripts.

All php users should upgrade to these updated packages, which contain a
backported patch to resolve this issue. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-07" />
        <updated date="2012-05-07" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1823.html">CVE-2012-1823</cve>
        <bugzilla href="http://bugzilla.redhat.com/818607" id="818607">CVE-2012-1823 php: command line arguments injection when run in CGI mode (VU#520827)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546034" comment="php-mysql is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033017" comment="php-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546016" comment="php-common is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033013" comment="php-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546004" comment="php-xml is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033007" comment="php-xml is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546008" comment="php-pdo is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033011" comment="php-pdo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546036" comment="php-mbstring is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033019" comment="php-mbstring is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546020" comment="php-xmlrpc is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033023" comment="php-xmlrpc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546010" comment="php-devel is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033005" comment="php-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546030" comment="php-ncurses is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033015" comment="php-ncurses is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546018" comment="php-bcmath is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033021" comment="php-bcmath is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546014" comment="php-ldap is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033039" comment="php-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546022" comment="php-dba is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033025" comment="php-dba is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546032" comment="php-odbc is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033009" comment="php-odbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546026" comment="php-snmp is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033033" comment="php-snmp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546024" comment="php-imap is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033031" comment="php-imap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546002" comment="php is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033003" comment="php is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546038" comment="php-pgsql is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033029" comment="php-pgsql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546028" comment="php-soap is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033035" comment="php-soap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546012" comment="php-gd is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033027" comment="php-gd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546006" comment="php-cli is earlier than 0:5.1.6-34.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120033037" comment="php-cli is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546090" comment="php-xml is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019014" comment="php-xml is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546078" comment="php-common is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019012" comment="php-common is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546062" comment="php-mysql is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019018" comment="php-mysql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546084" comment="php-pdo is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019036" comment="php-pdo is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546086" comment="php-xmlrpc is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019022" comment="php-xmlrpc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546064" comment="php-mbstring is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019052" comment="php-mbstring is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546058" comment="php-devel is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019042" comment="php-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546082" comment="php-embedded is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019026" comment="php-embedded is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546054" comment="php-ldap is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019038" comment="php-ldap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546046" comment="php-bcmath is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019040" comment="php-bcmath is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546094" comment="php-dba is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019024" comment="php-dba is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546070" comment="php-odbc is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019030" comment="php-odbc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546068" comment="php-snmp is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019032" comment="php-snmp is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546056" comment="php-zts is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019054" comment="php-zts is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546048" comment="php-imap is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019010" comment="php-imap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546044" comment="php is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019006" comment="php is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546088" comment="php-recode is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019008" comment="php-recode is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546076" comment="php-pgsql is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019048" comment="php-pgsql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546066" comment="php-tidy is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019056" comment="php-tidy is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546074" comment="php-soap is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019034" comment="php-soap is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546060" comment="php-enchant is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019016" comment="php-enchant is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546052" comment="php-gd is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019044" comment="php-gd is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546072" comment="php-intl is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019028" comment="php-intl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546092" comment="php-pspell is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019020" comment="php-pspell is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546080" comment="php-process is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019046" comment="php-process is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120546050" comment="php-cli is earlier than 0:5.3.3-3.el6_2.8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019050" comment="php-cli is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120547" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0547: php53 security update (Critical)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0547-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0547.html" />
      <reference source="CVE" ref_id="CVE-2012-1823" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1823.html" />
    <description>PHP is an HTML-embedded scripting language commonly used with the Apache
HTTP Server.

A flaw was found in the way the php-cgi executable processed command line
arguments when running in CGI mode. A remote attacker could send a 
specially-crafted request to a PHP script that would result in the query
string being parsed by php-cgi as command line options and arguments. This 
could lead to the disclosure of the script's source code or arbitrary code 
execution with the privileges of the PHP interpreter. (CVE-2012-1823) 

Red Hat is aware that a public exploit for this issue is available that 
allows remote code execution in affected PHP CGI configurations. This flaw 
does not affect the default configuration using the PHP module for Apache 
httpd to handle PHP scripts.

All php53 users should upgrade to these updated packages, which contain a
backported patch to resolve this issue. After installing the updated
packages, the httpd daemon must be restarted for the update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-07" />
        <updated date="2012-05-07" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1823.html">CVE-2012-1823</cve>
        <bugzilla href="http://bugzilla.redhat.com/818607" id="818607">CVE-2012-1823 php: command line arguments injection when run in CGI mode (VU#520827)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547028" comment="php53-xmlrpc is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019073" comment="php53-xmlrpc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547026" comment="php53-gd is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019065" comment="php53-gd is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547002" comment="php53 is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019059" comment="php53 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547042" comment="php53-imap is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019061" comment="php53-imap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547020" comment="php53-pgsql is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019087" comment="php53-pgsql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547018" comment="php53-process is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019089" comment="php53-process is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547032" comment="php53-ldap is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019063" comment="php53-ldap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547012" comment="php53-soap is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019075" comment="php53-soap is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547006" comment="php53-cli is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019097" comment="php53-cli is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547024" comment="php53-bcmath is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019091" comment="php53-bcmath is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547016" comment="php53-xml is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019071" comment="php53-xml is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547010" comment="php53-pdo is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019079" comment="php53-pdo is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547004" comment="php53-snmp is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019095" comment="php53-snmp is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547036" comment="php53-mbstring is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019069" comment="php53-mbstring is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547034" comment="php53-odbc is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019093" comment="php53-odbc is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547038" comment="php53-mysql is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019085" comment="php53-mysql is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547022" comment="php53-pspell is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019099" comment="php53-pspell is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547040" comment="php53-common is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019083" comment="php53-common is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547030" comment="php53-intl is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019081" comment="php53-intl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547014" comment="php53-devel is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019077" comment="php53-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120547008" comment="php53-dba is earlier than 0:5.3.3-7.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120019067" comment="php53-dba is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120571" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0571: kernel security and bug fix update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0571-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0571.html" />
      <reference source="CVE" ref_id="CVE-2011-4086" ref_url="https://www.redhat.com/security/data/cve/CVE-2011-4086.html" />
      <reference source="CVE" ref_id="CVE-2012-1601" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1601.html" />
    <description>The kernel packages contain the Linux kernel, the core of any Linux
operating system.

This update fixes the following security issues:

* A flaw was found in the way the Linux kernel's journal_unmap_buffer()
function handled buffer head states. On systems that have an ext4 file
system with a journal mounted, a local, unprivileged user could use this
flaw to cause a denial of service. (CVE-2011-4086, Moderate)

* A flaw was found in the way the KVM_CREATE_IRQCHIP ioctl was handled.
Calling this ioctl when at least one virtual CPU (VCPU) already existed
could lead to a NULL pointer dereference later when the VCPU is scheduled
to run. A local, unprivileged user on a KVM host could use this flaw to
crash the host. (CVE-2012-1601, Moderate)

This update also fixes several bugs. Documentation for these changes will
be available shortly from the Technical Notes document linked to in the
References section.

Users should upgrade to these updated packages, which contain backported
patches to correct these issues, and fix the bugs noted in the Technical
Notes. The system must be rebooted for this update to take effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-15" />
        <updated date="2012-05-15" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2011-4086.html">CVE-2011-4086</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1601.html">CVE-2012-1601</cve>
        <bugzilla href="http://bugzilla.redhat.com/749143" id="749143">CVE-2011-4086 kernel: jbd2: unmapped buffer with _Unwritten or _Delay flags set can lead to DoS</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/808199" id="808199">CVE-2012-1601 kernel: kvm: irqchip_in_kernel() and vcpu->arch.apic inconsistency</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/809374" id="809374">AMD IOMMU driver hands out dma handles that are in the MSI address range [rhel-6.2.z]</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/811135" id="811135">readdir64_r calls fail with ELOOP [rhel-6.2.z]</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/811299" id="811299">Fix RPC priority queue wake up all tasks processing [rhel-6.2.z]</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571023" comment="kernel-kdump-devel is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052024" comment="kernel-kdump-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571025" comment="kernel-doc is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052028" comment="kernel-doc is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571013" comment="kernel-devel is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052016" comment="kernel-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571017" comment="python-perf is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052014" comment="python-perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571009" comment="kernel-bootwrapper is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052008" comment="kernel-bootwrapper is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571007" comment="kernel-headers is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052010" comment="kernel-headers is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571011" comment="kernel-debug is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052020" comment="kernel-debug is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571015" comment="perf is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052012" comment="perf is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571027" comment="kernel-firmware is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052026" comment="kernel-firmware is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571021" comment="kernel-kdump is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052022" comment="kernel-kdump is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571019" comment="kernel-debug-devel is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052018" comment="kernel-debug-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120571005" comment="kernel is earlier than 0:2.6.32-220.17.1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120052006" comment="kernel is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120676" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0676: kvm security and bug fix update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0676-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0676.html" />
      <reference source="CVE" ref_id="CVE-2012-1601" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-1601.html" />
      <reference source="CVE" ref_id="CVE-2012-2121" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-2121.html" />
    <description>KVM (Kernel-based Virtual Machine) is a full virtualization solution for
Linux on AMD64 and Intel 64 systems. KVM is a Linux kernel module built for
the standard Red Hat Enterprise Linux kernel.

A flaw was found in the way the KVM_CREATE_IRQCHIP ioctl was handled.
Calling this ioctl when at least one virtual CPU (VCPU) already existed
could lead to a NULL pointer dereference later when the VCPU is scheduled
to run. A malicious user in the kvm group on the host could use this flaw
to crash the host. (CVE-2012-1601)

A flaw was found in the way device memory was handled during guest device
removal. Upon successful device removal, memory used by the device was not
properly unmapped from the corresponding IOMMU or properly released from
the kernel, leading to a memory leak. A malicious user in the kvm group on
the host who has the ability to assign a device to a guest could use this
flaw to crash the host. (CVE-2012-2121)

This update also fixes the following bug:

* An off-by-one error in the QEMU guest's memory management could, in rare
cases, cause QEMU-KVM to crash due to a segmentation fault in
tb_invalidate_phys_page_range() if a device initiated DMA into a specific
guest address. In a reported case, this issue presented on a system that
had a guest using the 8139cp network driver. (BZ#816207)

All users of kvm are advised to upgrade to these updated packages, which
contain backported patches to correct these issues. Note that the procedure
in the Solution section must be performed before this update will take
effect.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-21" />
        <updated date="2012-05-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-1601.html">CVE-2012-1601</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-2121.html">CVE-2012-2121</cve>
        <bugzilla href="http://bugzilla.redhat.com/808199" id="808199">CVE-2012-1601 kernel: kvm: irqchip_in_kernel() and vcpu->arch.apic inconsistency</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/814149" id="814149">CVE-2012-2121 kvm: device assignment page leak</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_virtualization</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120676010" comment="kmod-kvm is earlier than 0:83-249.el5_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051007" comment="kmod-kvm is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120676006" comment="kvm-tools is earlier than 0:83-249.el5_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051011" comment="kvm-tools is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120676004" comment="kvm-qemu-img is earlier than 0:83-249.el5_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051005" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120676008" comment="kmod-kvm-debug is earlier than 0:83-249.el5_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051009" comment="kmod-kvm-debug is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120676002" comment="kvm is earlier than 0:83-249.el5_8.4" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120051003" comment="kvm is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120677" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0677: postgresql security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0677-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0677.html" />
      <reference source="CVE" ref_id="CVE-2012-0866" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0866.html" />
      <reference source="CVE" ref_id="CVE-2012-0868" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0868.html" />
    <description>PostgreSQL is an advanced object-relational database management system
(DBMS).

The pg_dump utility inserted object names literally into comments in the
SQL script it produces. An unprivileged database user could create an
object whose name includes a newline followed by an SQL command. This SQL
command might then be executed by a privileged user during later restore of
the backup dump, allowing privilege escalation. (CVE-2012-0868)

CREATE TRIGGER did not do a permissions check on the trigger function to
be called. This could possibly allow an authenticated database user to
call a privileged trigger function on data of their choosing.
(CVE-2012-0866)

All PostgreSQL users are advised to upgrade to these updated packages,
which contain backported patches to correct these issues. If the postgresql
service is running, it will be automatically restarted after installing
this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-21" />
        <updated date="2012-05-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0866.html">CVE-2012-0866</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0868.html">CVE-2012-0868</cve>
        <bugzilla href="http://bugzilla.redhat.com/797222" id="797222">CVE-2012-0866 postgresql: Absent permission checks on trigger function to be called when creating a trigger</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/797917" id="797917">CVE-2012-0868 postgresql: SQL injection due unsanitized newline characters in object names</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677018" comment="postgresql-libs is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677019" comment="postgresql-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677016" comment="postgresql-pl is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677017" comment="postgresql-pl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677004" comment="postgresql-python is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677005" comment="postgresql-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677006" comment="postgresql-tcl is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677007" comment="postgresql-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677020" comment="postgresql-docs is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677021" comment="postgresql-docs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677014" comment="postgresql-devel is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677015" comment="postgresql-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677012" comment="postgresql-test is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677013" comment="postgresql-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677010" comment="postgresql-contrib is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677011" comment="postgresql-contrib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677008" comment="postgresql-server is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677009" comment="postgresql-server is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120677002" comment="postgresql is earlier than 0:8.1.23-4.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120677003" comment="postgresql is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120678" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0678: postgresql and postgresql84 security update (Moderate)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 5</platform>
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0678-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0678.html" />
      <reference source="CVE" ref_id="CVE-2012-0866" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0866.html" />
      <reference source="CVE" ref_id="CVE-2012-0867" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0867.html" />
      <reference source="CVE" ref_id="CVE-2012-0868" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0868.html" />
    <description>PostgreSQL is an advanced object-relational database management system
(DBMS).

The pg_dump utility inserted object names literally into comments in the
SQL script it produces. An unprivileged database user could create an
object whose name includes a newline followed by an SQL command. This SQL
command might then be executed by a privileged user during later restore of
the backup dump, allowing privilege escalation. (CVE-2012-0868)

When configured to do SSL certificate verification, PostgreSQL only checked
the first 31 characters of the certificate's Common Name field. Depending
on the configuration, this could allow an attacker to impersonate a server
or a client using a certificate from a trusted Certificate Authority issued
for a different name. (CVE-2012-0867)

CREATE TRIGGER did not do a permissions check on the trigger function to
be called. This could possibly allow an authenticated database user to
call a privileged trigger function on data of their choosing.
(CVE-2012-0866)

These updated packages upgrade PostgreSQL to version 8.4.11, which fixes
these issues as well as several data-corruption issues and lesser
non-security issues. Refer to the PostgreSQL Release Notes for a full list
of changes:

http://www.postgresql.org/docs/8.4/static/release.html

All PostgreSQL users are advised to upgrade to these updated packages,
which correct these issues. If the postgresql service is running, it will
be automatically restarted after installing this update.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Moderate</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-21" />
        <updated date="2012-05-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0866.html">CVE-2012-0866</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0867.html">CVE-2012-0867</cve>
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0868.html">CVE-2012-0868</cve>
        <bugzilla href="http://bugzilla.redhat.com/797222" id="797222">CVE-2012-0866 postgresql: Absent permission checks on trigger function to be called when creating a trigger</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/797915" id="797915">CVE-2012-0867 postgresql: MITM due improper x509_v3 CN validation during certificate verification</bugzilla>
        <bugzilla href="http://bugzilla.redhat.com/797917" id="797917">CVE-2012-0868 postgresql: SQL injection due unsanitized newline characters in object names</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120006001" comment="Red Hat Enterprise Linux 5 is installed" />
 <criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678012" comment="postgresql84-python is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678013" comment="postgresql84-python is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678022" comment="postgresql84-plperl is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678023" comment="postgresql84-plperl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678016" comment="postgresql84-docs is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678017" comment="postgresql84-docs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678006" comment="postgresql84-plpython is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678007" comment="postgresql84-plpython is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678020" comment="postgresql84-tcl is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678021" comment="postgresql84-tcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678018" comment="postgresql84-libs is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678019" comment="postgresql84-libs is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678008" comment="postgresql84-devel is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678009" comment="postgresql84-devel is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678004" comment="postgresql84-test is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678005" comment="postgresql84-test is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678002" comment="postgresql84 is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678003" comment="postgresql84 is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678024" comment="postgresql84-pltcl is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678025" comment="postgresql84-pltcl is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678014" comment="postgresql84-contrib is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678015" comment="postgresql84-contrib is signed with Red Hat redhatrelease key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678010" comment="postgresql84-server is earlier than 0:8.4.11-1.el5_8" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678011" comment="postgresql84-server is signed with Red Hat redhatrelease key" />
 
</criteria>

</criteria>

</criteria>
<criteria operator="AND">
 
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>
<criteria operator="OR">
 
 <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678044" comment="postgresql-server is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678045" comment="postgresql-server is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678040" comment="postgresql-libs is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678041" comment="postgresql-libs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678038" comment="postgresql-docs is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678039" comment="postgresql-docs is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678034" comment="postgresql-contrib is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678035" comment="postgresql-contrib is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678036" comment="postgresql-devel is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678037" comment="postgresql-devel is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678032" comment="postgresql-plperl is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678033" comment="postgresql-plperl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678030" comment="postgresql is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678031" comment="postgresql is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678046" comment="postgresql-test is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678047" comment="postgresql-test is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678048" comment="postgresql-pltcl is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678049" comment="postgresql-pltcl is signed with Red Hat redhatrelease2 key" />
 
</criteria>
<criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120678042" comment="postgresql-plpython is earlier than 0:8.4.11-1.el6_2" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120678043" comment="postgresql-plpython is signed with Red Hat redhatrelease2 key" />
 
</criteria>

</criteria>

</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120683" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0683: bind-dyndb-ldap security update (Important)</title>
    <affected family="unix">
      <platform>Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0683-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0683.html" />
      <reference source="CVE" ref_id="CVE-2012-2134" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-2134.html" />
    <description>The dynamic LDAP back end is a plug-in for BIND that provides back-end
capabilities to LDAP databases. It features support for dynamic updates
and internal caching that help to reduce the load on LDAP servers.

A flaw was found in the way bind-dyndb-ldap handled LDAP query errors. If a
remote attacker were able to send DNS queries to a named server that is
configured to use bind-dyndb-ldap, they could trigger such an error with a
DNS query leveraging bind-dyndb-ldap's insufficient escaping of the LDAP
base DN (distinguished name). This would result in an invalid LDAP query
that named would retry in a loop, preventing it from responding to other
DNS queries. With this update, bind-dyndb-ldap only attempts to retry one
time when an LDAP search returns an unexpected error. (CVE-2012-2134)

Red Hat would like to thank Ronald van Zantvoort for reporting this issue.

All bind-dyndb-ldap users should upgrade to this updated package, which
contains a backported patch to correct this issue. For the update to take
effect, the named service must be restarted.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Important</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-21" />
        <updated date="2012-05-21" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-2134.html">CVE-2012-2134</cve>
        <bugzilla href="http://bugzilla.redhat.com/815846" id="815846">CVE-2012-2134 bind-dyndb-ldap: Bind DoS (named hang) by processing DNS query for zone served by bind-dyndb-ldap</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/o:redhat:enterprise_linux</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120683005" comment="bind-dyndb-ldap is earlier than 0:0.2.0-7.el6_2.1" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120683006" comment="bind-dyndb-ldap is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
<definition id="oval:com.redhat.rhsa:def:20120688" version="501" class="patch">
      <metadata>
        <title>RHSA-2012:0688: flash-plugin security update (Critical)</title>
    <affected family="unix">
      <platform>Supplementary for Red Hat Enterprise Linux 6</platform>
    </affected>
    <reference source="RHSA" ref_id="RHSA-2012:0688-00" ref_url="https://rhn.redhat.com/errata/RHSA-2012-0688.html" />
      <reference source="CVE" ref_id="CVE-2012-0779" ref_url="https://www.redhat.com/security/data/cve/CVE-2012-0779.html" />
    <description>The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash
Player web browser plug-in.

This update fixes one vulnerability in Adobe Flash Player. This
vulnerability is detailed on the Adobe security page APSB12-09, listed in
the References section. Specially-crafted SWF content could cause
flash-plugin to crash or, potentially, execute arbitrary code when a victim
loads a page containing the specially-crafted SWF content. (CVE-2012-0779)

All users of Adobe Flash Player should install this updated package, which
upgrades Flash Player to version 10.3.183.19.</description>

<!-- ~~~~~~~~~~~~~~~~~~~~   advisory details   ~~~~~~~~~~~~~~~~~~~ -->

<advisory from="secalert@redhat.com">
        <severity>Critical</severity>
        <rights>Copyright 2012 Red Hat, Inc.</rights>
        <issued date="2012-05-23" />
        <updated date="2012-05-23" />
        <cve href="https://www.redhat.com/security/data/cve/CVE-2012-0779.html">CVE-2012-0779</cve>
        <bugzilla href="http://bugzilla.redhat.com/819003" id="819003">CVE-2012-0779 flash-plugin: arbitrary code execution via object confusion (APSB12-09)</bugzilla>
    <affected_cpe_list>
        <cpe>cpe:/a:redhat:rhel_extras</cpe>
    </affected_cpe_list>
</advisory>
      </metadata>
      <criteria operator="AND">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120688005" comment="flash-plugin is earlier than 0:10.3.183.19-1.el6" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120144006" comment="flash-plugin is signed with Red Hat redhatrelease2 key" />
 <criteria operator="OR">
 <criterion test_ref="oval:com.redhat.rhsa:tst:20120011006" comment="Red Hat Enterprise Linux 6 Client is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011007" comment="Red Hat Enterprise Linux 6 Server is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011008" comment="Red Hat Enterprise Linux 6 Workstation is installed" /><criterion test_ref="oval:com.redhat.rhsa:tst:20120011009" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" />
 
</criteria>

</criteria>

    </definition>
</definitions>

<tests>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006001" version="502" comment="Red Hat Enterprise Linux 5 is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006002" version="502" comment="java-1.4.2-ibm is earlier than 0:1.4.2.13.11-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006003" version="502" comment="java-1.4.2-ibm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006004" version="502" comment="java-1.4.2-ibm-javacomm is earlier than 0:1.4.2.13.11-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006005" version="502" comment="java-1.4.2-ibm-javacomm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006006" version="502" comment="java-1.4.2-ibm-devel is earlier than 0:1.4.2.13.11-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006007" version="502" comment="java-1.4.2-ibm-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006008" version="502" comment="java-1.4.2-ibm-demo is earlier than 0:1.4.2.13.11-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006009" version="502" comment="java-1.4.2-ibm-demo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006010" version="502" comment="java-1.4.2-ibm-jdbc is earlier than 0:1.4.2.13.11-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006011" version="502" comment="java-1.4.2-ibm-jdbc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006012" version="502" comment="java-1.4.2-ibm-src is earlier than 0:1.4.2.13.11-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006013" version="502" comment="java-1.4.2-ibm-src is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006014" version="502" comment="java-1.4.2-ibm-plugin is earlier than 0:1.4.2.13.11-1jpp.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120006015" version="502" comment="java-1.4.2-ibm-plugin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007002" version="502" comment="kernel is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007003" version="502" comment="kernel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007004" version="502" comment="kernel-headers is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007005" version="502" comment="kernel-headers is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007006" version="502" comment="kernel-debug is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007007" version="502" comment="kernel-debug is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007008" version="502" comment="kernel-debug-devel is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007009" version="502" comment="kernel-debug-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007010" version="502" comment="kernel-xen-devel is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007011" version="502" comment="kernel-xen-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007012" version="502" comment="kernel-devel is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007013" version="502" comment="kernel-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007014" version="502" comment="kernel-xen is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007015" version="502" comment="kernel-xen is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007016" version="502" comment="kernel-kdump-devel is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007017" version="502" comment="kernel-kdump-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007018" version="502" comment="kernel-kdump is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007019" version="502" comment="kernel-kdump is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007020" version="502" comment="kernel-PAE is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007021" version="502" comment="kernel-PAE is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007022" version="502" comment="kernel-PAE-devel is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007023" version="502" comment="kernel-PAE-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007024" version="502" comment="kernel-doc is earlier than 0:2.6.18-274.17.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120007003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120007025" version="502" comment="kernel-doc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011002" version="502" comment="acroread is earlier than 0:9.4.7-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011003" version="502" comment="acroread is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011004" version="502" comment="acroread-plugin is earlier than 0:9.4.7-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011005" version="502" comment="acroread-plugin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011006" version="502" comment="Red Hat Enterprise Linux 6 Client is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011007" version="502" comment="Red Hat Enterprise Linux 6 Server is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011008" version="502" comment="Red Hat Enterprise Linux 6 Workstation is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011009" version="502" comment="Red Hat Enterprise Linux 6 ComputeNode is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011010" version="502" comment="acroread is earlier than 0:9.4.7-1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011011" version="502" comment="acroread is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011012" version="502" comment="acroread-plugin is earlier than 0:9.4.7-1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120011013" version="502" comment="acroread-plugin is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120016001" version="502" comment="Red Hat Enterprise Linux 4 is installed" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120016002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120016002" version="502" comment="libxml2 is earlier than 0:2.6.16-12.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120016003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120016003" version="502" comment="libxml2 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120016004" version="502" comment="libxml2-devel is earlier than 0:2.6.16-12.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120016003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120016005" version="502" comment="libxml2-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120016006" version="502" comment="libxml2-python is earlier than 0:2.6.16-12.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120016003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120016007" version="502" comment="libxml2-python is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120017002" version="502" comment="libxml2 is earlier than 0:2.6.26-2.1.12.el5_7.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120017003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120017003" version="502" comment="libxml2 is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120017004" version="502" comment="libxml2-devel is earlier than 0:2.6.26-2.1.12.el5_7.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120017003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120017005" version="502" comment="libxml2-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120017006" version="502" comment="libxml2-python is earlier than 0:2.6.26-2.1.12.el5_7.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120017003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120017007" version="502" comment="libxml2-python is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120018005" version="502" comment="libxml2 is earlier than 0:2.7.6-4.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120018003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120018006" version="502" comment="libxml2 is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120018007" version="502" comment="libxml2-python is earlier than 0:2.7.6-4.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120018003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120018008" version="502" comment="libxml2-python is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120018009" version="502" comment="libxml2-devel is earlier than 0:2.7.6-4.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120018003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120018010" version="502" comment="libxml2-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120018011" version="502" comment="libxml2-static is earlier than 0:2.7.6-4.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120018008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120018003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120018012" version="502" comment="libxml2-static is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120018008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019005" version="502" comment="php is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019006" version="502" comment="php is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019007" version="502" comment="php-recode is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019008" version="502" comment="php-recode is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019009" version="502" comment="php-imap is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019010" version="502" comment="php-imap is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019011" version="502" comment="php-common is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019012" version="502" comment="php-common is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019013" version="502" comment="php-xml is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019014" version="502" comment="php-xml is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019015" version="502" comment="php-enchant is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019016" version="502" comment="php-enchant is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019017" version="502" comment="php-mysql is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019018" version="502" comment="php-mysql is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019019" version="502" comment="php-pspell is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019020" version="502" comment="php-pspell is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019021" version="502" comment="php-xmlrpc is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019022" version="502" comment="php-xmlrpc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019023" version="502" comment="php-dba is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019024" version="502" comment="php-dba is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019025" version="502" comment="php-embedded is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019026" version="502" comment="php-embedded is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019027" version="502" comment="php-intl is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019028" version="502" comment="php-intl is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019029" version="502" comment="php-odbc is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019030" version="502" comment="php-odbc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019031" version="502" comment="php-snmp is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019032" version="502" comment="php-snmp is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019033" version="502" comment="php-soap is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019034" version="502" comment="php-soap is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019035" version="502" comment="php-pdo is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019036" version="502" comment="php-pdo is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019037" version="502" comment="php-ldap is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019038" version="502" comment="php-ldap is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019039" version="502" comment="php-bcmath is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019040" version="502" comment="php-bcmath is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019041" version="502" comment="php-devel is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019042" version="502" comment="php-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019043" version="502" comment="php-gd is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019044" version="502" comment="php-gd is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019045" version="502" comment="php-process is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019046" version="502" comment="php-process is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019047" version="502" comment="php-pgsql is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019048" version="502" comment="php-pgsql is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019049" version="502" comment="php-cli is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019050" version="502" comment="php-cli is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019051" version="502" comment="php-mbstring is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019052" version="502" comment="php-mbstring is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019053" version="502" comment="php-zts is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019054" version="502" comment="php-zts is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019055" version="502" comment="php-tidy is earlier than 0:5.3.3-3.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019056" version="502" comment="php-tidy is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019058" version="502" comment="php53 is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019059" version="502" comment="php53 is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019060" version="502" comment="php53-imap is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019033" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019061" version="502" comment="php53-imap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019033" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019062" version="502" comment="php53-ldap is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019034" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019063" version="502" comment="php53-ldap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019034" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019064" version="502" comment="php53-gd is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019035" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019065" version="502" comment="php53-gd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019035" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019066" version="502" comment="php53-dba is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019036" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019067" version="502" comment="php53-dba is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019036" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019068" version="502" comment="php53-mbstring is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019037" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019069" version="502" comment="php53-mbstring is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019037" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019070" version="502" comment="php53-xml is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019038" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019071" version="502" comment="php53-xml is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019038" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019072" version="502" comment="php53-xmlrpc is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019039" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019073" version="502" comment="php53-xmlrpc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019039" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019074" version="502" comment="php53-soap is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019040" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019075" version="502" comment="php53-soap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019040" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019076" version="502" comment="php53-devel is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019041" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019077" version="502" comment="php53-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019041" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019078" version="502" comment="php53-pdo is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019042" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019079" version="502" comment="php53-pdo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019042" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019080" version="502" comment="php53-intl is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019043" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019081" version="502" comment="php53-intl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019043" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019082" version="502" comment="php53-common is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019044" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019083" version="502" comment="php53-common is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019044" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019084" version="502" comment="php53-mysql is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019045" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019085" version="502" comment="php53-mysql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019045" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019086" version="502" comment="php53-pgsql is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019046" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019087" version="502" comment="php53-pgsql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019046" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019088" version="502" comment="php53-process is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019047" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019089" version="502" comment="php53-process is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019047" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019090" version="502" comment="php53-bcmath is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019048" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019091" version="502" comment="php53-bcmath is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019048" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019092" version="502" comment="php53-odbc is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019049" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019093" version="502" comment="php53-odbc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019049" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019094" version="502" comment="php53-snmp is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019050" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019095" version="502" comment="php53-snmp is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019050" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019096" version="502" comment="php53-cli is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019051" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019097" version="502" comment="php53-cli is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019051" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019098" version="502" comment="php53-pspell is earlier than 0:5.3.3-1.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019052" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120019006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120019099" version="502" comment="php53-pspell is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019052" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033002" version="502" comment="php is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033003" version="502" comment="php is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033004" version="502" comment="php-devel is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033005" version="502" comment="php-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033006" version="502" comment="php-xml is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033007" version="502" comment="php-xml is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033008" version="502" comment="php-odbc is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033009" version="502" comment="php-odbc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033010" version="502" comment="php-pdo is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033011" version="502" comment="php-pdo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033012" version="502" comment="php-common is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033013" version="502" comment="php-common is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033014" version="502" comment="php-ncurses is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120033008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033015" version="502" comment="php-ncurses is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120033008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033016" version="502" comment="php-mysql is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033017" version="502" comment="php-mysql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033018" version="502" comment="php-mbstring is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033019" version="502" comment="php-mbstring is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033020" version="502" comment="php-bcmath is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033021" version="502" comment="php-bcmath is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033022" version="502" comment="php-xmlrpc is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033023" version="502" comment="php-xmlrpc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033024" version="502" comment="php-dba is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033025" version="502" comment="php-dba is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033026" version="502" comment="php-gd is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033027" version="502" comment="php-gd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033028" version="502" comment="php-pgsql is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033029" version="502" comment="php-pgsql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033030" version="502" comment="php-imap is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033031" version="502" comment="php-imap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033032" version="502" comment="php-snmp is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033033" version="502" comment="php-snmp is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033034" version="502" comment="php-soap is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033035" version="502" comment="php-soap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033036" version="502" comment="php-cli is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033037" version="502" comment="php-cli is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033038" version="502" comment="php-ldap is earlier than 0:5.1.6-27.el5_7.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120033003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120033039" version="502" comment="php-ldap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034002" version="502" comment="java-1.6.0-ibm is earlier than 1:1.6.0.10.0-1jpp.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034003" version="502" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034004" version="502" comment="java-1.6.0-ibm-accessibility is earlier than 1:1.6.0.10.0-1jpp.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034005" version="502" comment="java-1.6.0-ibm-accessibility is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034006" version="502" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.10.0-1jpp.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034007" version="502" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034008" version="502" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.10.0-1jpp.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034009" version="502" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034010" version="502" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.10.0-1jpp.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034011" version="502" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034012" version="502" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.10.0-1jpp.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034013" version="502" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034014" version="502" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.10.0-1jpp.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034015" version="502" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034016" version="502" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.10.0-1jpp.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034017" version="502" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034022" version="502" comment="java-1.6.0-ibm is earlier than 1:1.6.0.10.0-1jpp.2.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034023" version="502" comment="java-1.6.0-ibm is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034024" version="502" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.10.0-1jpp.2.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034025" version="502" comment="java-1.6.0-ibm-plugin is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034026" version="502" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.10.0-1jpp.2.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034027" version="502" comment="java-1.6.0-ibm-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034028" version="502" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.10.0-1jpp.2.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034029" version="502" comment="java-1.6.0-ibm-jdbc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034030" version="502" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.10.0-1jpp.2.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034031" version="502" comment="java-1.6.0-ibm-javacomm is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034032" version="502" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.10.0-1jpp.2.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034033" version="502" comment="java-1.6.0-ibm-demo is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034034" version="502" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.10.0-1jpp.2.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120034007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120034035" version="502" comment="java-1.6.0-ibm-src is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120050005" version="502" comment="qemu-kvm is earlier than 2:0.12.1.2-2.209.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120050005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120050003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120050006" version="502" comment="qemu-kvm is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120050005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120050007" version="502" comment="qemu-img is earlier than 2:0.12.1.2-2.209.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120050006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120050003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120050008" version="502" comment="qemu-img is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120050006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120050009" version="502" comment="qemu-kvm-tools is earlier than 2:0.12.1.2-2.209.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120050007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120050003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120050010" version="502" comment="qemu-kvm-tools is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120050007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051002" version="502" comment="kvm is earlier than 0:83-239.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120051003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051003" version="502" comment="kvm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051004" version="502" comment="kvm-qemu-img is earlier than 0:83-239.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120051003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051005" version="502" comment="kvm-qemu-img is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051006" version="502" comment="kmod-kvm is earlier than 0:83-239.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120051003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051007" version="502" comment="kmod-kvm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051008" version="502" comment="kmod-kvm-debug is earlier than 0:83-239.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120051003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051009" version="502" comment="kmod-kvm-debug is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051010" version="502" comment="kvm-tools is earlier than 0:83-239.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120051003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120051011" version="502" comment="kvm-tools is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052005" version="502" comment="kernel is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052006" version="502" comment="kernel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052007" version="502" comment="kernel-bootwrapper is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052008" version="502" comment="kernel-bootwrapper is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052009" version="502" comment="kernel-headers is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052010" version="502" comment="kernel-headers is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052011" version="502" comment="perf is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052012" version="502" comment="perf is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052013" version="502" comment="python-perf is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052014" version="502" comment="python-perf is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052015" version="502" comment="kernel-devel is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052016" version="502" comment="kernel-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052017" version="502" comment="kernel-debug-devel is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052018" version="502" comment="kernel-debug-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052019" version="502" comment="kernel-debug is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052020" version="502" comment="kernel-debug is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052021" version="502" comment="kernel-kdump is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052022" version="502" comment="kernel-kdump is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052023" version="502" comment="kernel-kdump-devel is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052024" version="502" comment="kernel-kdump-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052025" version="502" comment="kernel-firmware is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052026" version="502" comment="kernel-firmware is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052027" version="502" comment="kernel-doc is earlier than 0:2.6.32-220.4.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120052003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120052028" version="502" comment="kernel-doc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058005" version="502" comment="glibc is earlier than 0:2.12-1.47.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120058003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058006" version="502" comment="glibc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058007" version="502" comment="nscd is earlier than 0:2.12-1.47.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120058003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058008" version="502" comment="nscd is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058009" version="502" comment="glibc-utils is earlier than 0:2.12-1.47.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120058003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058010" version="502" comment="glibc-utils is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058011" version="502" comment="glibc-headers is earlier than 0:2.12-1.47.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120058003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058012" version="502" comment="glibc-headers is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058013" version="502" comment="glibc-devel is earlier than 0:2.12-1.47.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120058003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058014" version="502" comment="glibc-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058015" version="502" comment="glibc-static is earlier than 0:2.12-1.47.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120058003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058016" version="502" comment="glibc-static is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058017" version="502" comment="glibc-common is earlier than 0:2.12-1.47.el6_2.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120058003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120058018" version="502" comment="glibc-common is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120059005" version="502" comment="openssl is earlier than 0:1.0.0-20.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120059003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120059006" version="502" comment="openssl is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120059007" version="502" comment="openssl-perl is earlier than 0:1.0.0-20.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120059003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120059008" version="502" comment="openssl-perl is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120059009" version="502" comment="openssl-devel is earlier than 0:1.0.0-20.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120059003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120059010" version="502" comment="openssl-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120059011" version="502" comment="openssl-static is earlier than 0:1.0.0-20.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120059003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120059012" version="502" comment="openssl-static is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120060002" version="502" comment="openssl is earlier than 0:0.9.8e-20.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120060003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120060003" version="502" comment="openssl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120060004" version="502" comment="openssl-perl is earlier than 0:0.9.8e-20.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120060003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120060005" version="502" comment="openssl-perl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120060006" version="502" comment="openssl-devel is earlier than 0:0.9.8e-20.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120060003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120060007" version="502" comment="openssl-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120062005" version="502" comment="t1lib is earlier than 0:5.1.2-6.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120062005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120062006" version="502" comment="t1lib is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120062005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120062007" version="502" comment="t1lib-static is earlier than 0:5.1.2-6.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120062006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120062008" version="502" comment="t1lib-static is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120062006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120062009" version="502" comment="t1lib-devel is earlier than 0:5.1.2-6.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120062007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120062010" version="502" comment="t1lib-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120062007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120062011" version="502" comment="t1lib-apps is earlier than 0:5.1.2-6.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120062008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120062003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120062012" version="502" comment="t1lib-apps is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120062008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069005" version="502" comment="ruby is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069006" version="502" comment="ruby is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069007" version="502" comment="ruby-docs is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069008" version="502" comment="ruby-docs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069009" version="502" comment="ruby-rdoc is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069010" version="502" comment="ruby-rdoc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069011" version="502" comment="ruby-libs is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069012" version="502" comment="ruby-libs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069013" version="502" comment="ruby-devel is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069014" version="502" comment="ruby-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069015" version="502" comment="ruby-tcltk is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069016" version="502" comment="ruby-tcltk is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069017" version="502" comment="ruby-static is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069018" version="502" comment="ruby-static is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069019" version="502" comment="ruby-ri is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069020" version="502" comment="ruby-ri is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069021" version="502" comment="ruby-irb is earlier than 0:1.8.7.352-4.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120069003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120069022" version="502" comment="ruby-irb is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070002" version="502" comment="ruby is earlier than 0:1.8.1-18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070003" version="502" comment="ruby is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070004" version="502" comment="ruby-libs is earlier than 0:1.8.1-18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070005" version="502" comment="ruby-libs is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070006" version="502" comment="ruby-devel is earlier than 0:1.8.1-18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070007" version="502" comment="ruby-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070008" version="502" comment="ruby-tcltk is earlier than 0:1.8.1-18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070009" version="502" comment="ruby-tcltk is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070010" version="502" comment="ruby-docs is earlier than 0:1.8.1-18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070011" version="502" comment="ruby-docs is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070012" version="502" comment="irb is earlier than 0:1.8.1-18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120070007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070013" version="502" comment="irb is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120070007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070014" version="502" comment="ruby-mode is earlier than 0:1.8.1-18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120070008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070015" version="502" comment="ruby-mode is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120070008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070017" version="502" comment="ruby is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070018" version="502" comment="ruby is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070019" version="502" comment="ruby-rdoc is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070020" version="502" comment="ruby-rdoc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070021" version="502" comment="ruby-mode is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120070008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070022" version="502" comment="ruby-mode is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120070008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070023" version="502" comment="ruby-tcltk is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070024" version="502" comment="ruby-tcltk is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070025" version="502" comment="ruby-devel is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070026" version="502" comment="ruby-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070027" version="502" comment="ruby-ri is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070028" version="502" comment="ruby-ri is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070029" version="502" comment="ruby-libs is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070030" version="502" comment="ruby-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070031" version="502" comment="ruby-irb is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070032" version="502" comment="ruby-irb is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070033" version="502" comment="ruby-docs is earlier than 0:1.8.5-22.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120070006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120070034" version="502" comment="ruby-docs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120069006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071002" version="502" comment="php is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071003" version="502" comment="php is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071004" version="502" comment="php-ncurses is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120033008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071005" version="502" comment="php-ncurses is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120033008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071006" version="502" comment="php-imap is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071007" version="502" comment="php-imap is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071008" version="502" comment="php-snmp is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071009" version="502" comment="php-snmp is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071010" version="502" comment="php-xmlrpc is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071011" version="502" comment="php-xmlrpc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071012" version="502" comment="php-ldap is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071013" version="502" comment="php-ldap is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071014" version="502" comment="php-domxml is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120071008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071015" version="502" comment="php-domxml is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120071008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071016" version="502" comment="php-mysql is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071017" version="502" comment="php-mysql is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071018" version="502" comment="php-gd is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071019" version="502" comment="php-gd is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071020" version="502" comment="php-odbc is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071021" version="502" comment="php-odbc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071022" version="502" comment="php-devel is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071023" version="502" comment="php-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071024" version="502" comment="php-pgsql is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071025" version="502" comment="php-pgsql is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071026" version="502" comment="php-mbstring is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071027" version="502" comment="php-mbstring is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071028" version="502" comment="php-pear is earlier than 0:4.3.9-3.35" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120071015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120071003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120071029" version="502" comment="php-pear is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120071015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120073002" version="502" comment="redhat-release is earlier than 0:4AS-10.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120073003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120073003" version="502" comment="redhat-release is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120073004" version="502" comment="redhat-release is earlier than 0:4ES-10.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120073004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120073005" version="502" comment="redhat-release is earlier than 0:4WS-10.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120073005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120073006" version="502" comment="redhat-release is earlier than 0:4Desktop-10.7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120073006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079005" version="502" comment="xulrunner is earlier than 0:1.9.2.26-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120079005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079006" version="502" comment="xulrunner is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079007" version="502" comment="xulrunner-devel is earlier than 0:1.9.2.26-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120079005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079008" version="502" comment="xulrunner-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079009" version="502" comment="firefox is earlier than 0:3.6.26-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120079006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079010" version="502" comment="firefox is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079012" version="502" comment="firefox is earlier than 0:3.6.26-2.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120079008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079013" version="502" comment="firefox is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079015" version="502" comment="xulrunner is earlier than 0:1.9.2.26-1.el5_7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120079010" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079016" version="502" comment="xulrunner is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079017" version="502" comment="xulrunner-devel is earlier than 0:1.9.2.26-1.el5_7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120079010" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079018" version="502" comment="xulrunner-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079019" version="502" comment="firefox is earlier than 0:3.6.26-1.el5_7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120079011" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120079020" version="502" comment="firefox is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120080005" version="502" comment="thunderbird is earlier than 0:3.1.18-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120080003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120080006" version="502" comment="thunderbird is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084002" version="502" comment="seamonkey is earlier than 0:1.0.9-78.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120084003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084003" version="502" comment="seamonkey is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084004" version="502" comment="seamonkey-mail is earlier than 0:1.0.9-78.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120084003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084005" version="502" comment="seamonkey-mail is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084006" version="502" comment="seamonkey-chat is earlier than 0:1.0.9-78.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120084003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084007" version="502" comment="seamonkey-chat is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084008" version="502" comment="seamonkey-js-debugger is earlier than 0:1.0.9-78.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120084003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084009" version="502" comment="seamonkey-js-debugger is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084010" version="502" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-78.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120084003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084011" version="502" comment="seamonkey-dom-inspector is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084012" version="502" comment="seamonkey-devel is earlier than 0:1.0.9-78.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120084003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120084013" version="502" comment="seamonkey-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120085002" version="502" comment="thunderbird is earlier than 0:1.5.0.12-46.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120085004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120085003" version="502" comment="thunderbird is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120085005" version="502" comment="thunderbird is earlier than 0:2.0.0.24-28.el5_7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120085006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120085006" version="502" comment="thunderbird is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120086002" version="502" comment="openssl is earlier than 0:0.9.7a-43.18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120086003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120086003" version="502" comment="openssl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120086004" version="502" comment="openssl-perl is earlier than 0:0.9.7a-43.18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120086003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120086005" version="502" comment="openssl-perl is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120086006" version="502" comment="openssl-devel is earlier than 0:0.9.7a-43.18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120086003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120086007" version="502" comment="openssl-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092002" version="502" comment="php53 is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092004" version="502" comment="php53-gd is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019035" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092006" version="502" comment="php53-cli is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019051" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092008" version="502" comment="php53-common is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019044" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092010" version="502" comment="php53-snmp is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019050" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092012" version="502" comment="php53-mbstring is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019037" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092014" version="502" comment="php53-ldap is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019034" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092016" version="502" comment="php53-mysql is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019045" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092018" version="502" comment="php53-process is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019047" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092020" version="502" comment="php53-dba is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019036" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092022" version="502" comment="php53-odbc is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019049" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092024" version="502" comment="php53-imap is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019033" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092026" version="502" comment="php53-pgsql is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019046" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092028" version="502" comment="php53-pdo is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019042" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092030" version="502" comment="php53-pspell is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019052" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092032" version="502" comment="php53-soap is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019040" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092034" version="502" comment="php53-xmlrpc is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019039" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092036" version="502" comment="php53-xml is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019038" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092038" version="502" comment="php53-intl is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019043" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092040" version="502" comment="php53-bcmath is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019048" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120092042" version="502" comment="php53-devel is earlier than 0:5.3.3-1.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019041" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120092003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093005" version="502" comment="php is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093007" version="502" comment="php-dba is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093009" version="502" comment="php-mysql is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093011" version="502" comment="php-imap is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093013" version="502" comment="php-odbc is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093015" version="502" comment="php-enchant is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093017" version="502" comment="php-ldap is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093019" version="502" comment="php-mbstring is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093021" version="502" comment="php-xml is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093023" version="502" comment="php-process is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093025" version="502" comment="php-recode is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093027" version="502" comment="php-zts is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093029" version="502" comment="php-soap is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093031" version="502" comment="php-devel is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093033" version="502" comment="php-cli is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093035" version="502" comment="php-pgsql is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093037" version="502" comment="php-gd is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093039" version="502" comment="php-pspell is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093041" version="502" comment="php-intl is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093043" version="502" comment="php-embedded is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093045" version="502" comment="php-xmlrpc is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093047" version="502" comment="php-tidy is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093049" version="502" comment="php-pdo is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093051" version="502" comment="php-bcmath is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093053" version="502" comment="php-common is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093055" version="502" comment="php-snmp is earlier than 0:5.3.3-3.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093058" version="502" comment="php is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093060" version="502" comment="php-snmp is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093062" version="502" comment="php-mysql is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093064" version="502" comment="php-ldap is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093066" version="502" comment="php-odbc is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093068" version="502" comment="php-gd is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093070" version="502" comment="php-ncurses is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120033008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093072" version="502" comment="php-mbstring is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093074" version="502" comment="php-xmlrpc is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093076" version="502" comment="php-domxml is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120071008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093078" version="502" comment="php-pgsql is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093080" version="502" comment="php-pear is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120071015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093082" version="502" comment="php-imap is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093084" version="502" comment="php-devel is earlier than 0:4.3.9-3.36" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093087" version="502" comment="php is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093089" version="502" comment="php-snmp is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093091" version="502" comment="php-dba is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093093" version="502" comment="php-pdo is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093095" version="502" comment="php-gd is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093097" version="502" comment="php-ncurses is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120033008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093099" version="502" comment="php-odbc is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093101" version="502" comment="php-xml is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093103" version="502" comment="php-ldap is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093105" version="502" comment="php-mysql is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093107" version="502" comment="php-xmlrpc is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093109" version="502" comment="php-soap is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093111" version="502" comment="php-cli is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093113" version="502" comment="php-bcmath is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093115" version="502" comment="php-common is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093117" version="502" comment="php-imap is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093119" version="502" comment="php-devel is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093121" version="502" comment="php-mbstring is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120093123" version="502" comment="php-pgsql is earlier than 0:5.1.6-27.el5_7.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120093009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095005" version="502" comment="ghostscript is earlier than 0:8.70-11.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120095004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095006" version="502" comment="ghostscript is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095007" version="502" comment="ghostscript-gtk is earlier than 0:8.70-11.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120095004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095008" version="502" comment="ghostscript-gtk is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095009" version="502" comment="ghostscript-devel is earlier than 0:8.70-11.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120095004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095010" version="502" comment="ghostscript-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095011" version="502" comment="ghostscript-doc is earlier than 0:8.70-11.el6_2.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120095004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095012" version="502" comment="ghostscript-doc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095014" version="502" comment="ghostscript is earlier than 0:8.70-6.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120095006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095015" version="502" comment="ghostscript is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095016" version="502" comment="ghostscript-gtk is earlier than 0:8.70-6.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120095006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095017" version="502" comment="ghostscript-gtk is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095018" version="502" comment="ghostscript-devel is earlier than 0:8.70-6.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120095006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120095019" version="502" comment="ghostscript-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120096002" version="502" comment="ghostscript is earlier than 0:7.07-33.13.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120096003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120096003" version="502" comment="ghostscript is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120096004" version="502" comment="ghostscript-gtk is earlier than 0:7.07-33.13.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120096003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120096005" version="502" comment="ghostscript-gtk is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120096006" version="502" comment="ghostscript-devel is earlier than 0:7.07-33.13.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120096003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120096007" version="502" comment="ghostscript-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120095007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120103002" version="502" comment="squirrelmail is earlier than 0:1.4.8-18.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120103002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120103004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120103003" version="502" comment="squirrelmail is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120103002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120103005" version="502" comment="squirrelmail is earlier than 0:1.4.8-5.el5_7.13" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120103002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120103006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120103006" version="502" comment="squirrelmail is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120103002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105005" version="502" comment="mysql is earlier than 0:5.1.61-1.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120105003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105006" version="502" comment="mysql is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105007" version="502" comment="mysql-embedded-devel is earlier than 0:5.1.61-1.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120105003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105008" version="502" comment="mysql-embedded-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105009" version="502" comment="mysql-devel is earlier than 0:5.1.61-1.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120105003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105010" version="502" comment="mysql-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105011" version="502" comment="mysql-embedded is earlier than 0:5.1.61-1.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120105003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105012" version="502" comment="mysql-embedded is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105013" version="502" comment="mysql-bench is earlier than 0:5.1.61-1.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120105003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105014" version="502" comment="mysql-bench is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105015" version="502" comment="mysql-server is earlier than 0:5.1.61-1.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120105003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105016" version="502" comment="mysql-server is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105017" version="502" comment="mysql-libs is earlier than 0:5.1.61-1.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120105003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105018" version="502" comment="mysql-libs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105019" version="502" comment="mysql-test is earlier than 0:5.1.61-1.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120105003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120105020" version="502" comment="mysql-test is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107002" version="502" comment="kernel is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107004" version="502" comment="kernel-headers is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107006" version="502" comment="kernel-xen-devel is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107008" version="502" comment="kernel-devel is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107010" version="502" comment="kernel-debug-devel is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107012" version="502" comment="kernel-debug is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107014" version="502" comment="kernel-xen is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107016" version="502" comment="kernel-kdump is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107018" version="502" comment="kernel-kdump-devel is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107020" version="502" comment="kernel-PAE-devel is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107022" version="502" comment="kernel-PAE is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120107024" version="502" comment="kernel-doc is earlier than 0:2.6.18-274.18.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120107003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125002" version="502" comment="glibc is earlier than 0:2.3.4-2.57" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125003" version="502" comment="glibc is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125004" version="502" comment="nscd is earlier than 0:2.3.4-2.57" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125005" version="502" comment="nscd is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125006" version="502" comment="glibc-common is earlier than 0:2.3.4-2.57" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125007" version="502" comment="glibc-common is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125008" version="502" comment="glibc-utils is earlier than 0:2.3.4-2.57" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125009" version="502" comment="glibc-utils is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125010" version="502" comment="nptl-devel is earlier than 0:2.3.4-2.57" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120125006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125011" version="502" comment="nptl-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120125006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125012" version="502" comment="glibc-profile is earlier than 0:2.3.4-2.57" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120125007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125013" version="502" comment="glibc-profile is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120125007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125014" version="502" comment="glibc-devel is earlier than 0:2.3.4-2.57" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125015" version="502" comment="glibc-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125016" version="502" comment="glibc-headers is earlier than 0:2.3.4-2.57" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120125003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120125017" version="502" comment="glibc-headers is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126002" version="502" comment="glibc is earlier than 0:2.5-65.el5_7.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126003" version="502" comment="glibc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126004" version="502" comment="glibc-devel is earlier than 0:2.5-65.el5_7.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126005" version="502" comment="glibc-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126006" version="502" comment="nscd is earlier than 0:2.5-65.el5_7.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126007" version="502" comment="nscd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126008" version="502" comment="glibc-headers is earlier than 0:2.5-65.el5_7.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126009" version="502" comment="glibc-headers is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126010" version="502" comment="glibc-utils is earlier than 0:2.5-65.el5_7.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126011" version="502" comment="glibc-utils is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126012" version="502" comment="glibc-common is earlier than 0:2.5-65.el5_7.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120126003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120126013" version="502" comment="glibc-common is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127002" version="502" comment="mysql is earlier than 0:5.0.95-1.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120127003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127003" version="502" comment="mysql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127004" version="502" comment="mysql-devel is earlier than 0:5.0.95-1.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120127003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127005" version="502" comment="mysql-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127006" version="502" comment="mysql-server is earlier than 0:5.0.95-1.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120127003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127007" version="502" comment="mysql-server is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127008" version="502" comment="mysql-bench is earlier than 0:5.0.95-1.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120127003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127009" version="502" comment="mysql-bench is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127010" version="502" comment="mysql-test is earlier than 0:5.0.95-1.el5_7.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120127003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120127011" version="502" comment="mysql-test is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120105012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128005" version="502" comment="httpd is earlier than 0:2.2.15-15.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120128003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128006" version="502" comment="httpd is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128007" version="502" comment="httpd-devel is earlier than 0:2.2.15-15.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120128003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128008" version="502" comment="httpd-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128009" version="502" comment="httpd-tools is earlier than 0:2.2.15-15.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120128003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128010" version="502" comment="httpd-tools is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128011" version="502" comment="mod_ssl is earlier than 0:2.2.15-15.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120128003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128012" version="502" comment="mod_ssl is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128013" version="502" comment="httpd-manual is earlier than 0:2.2.15-15.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120128003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120128014" version="502" comment="httpd-manual is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135005" version="502" comment="java-1.6.0-openjdk is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120135003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135006" version="502" comment="java-1.6.0-openjdk is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135007" version="502" comment="java-1.6.0-openjdk-demo is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120135003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135008" version="502" comment="java-1.6.0-openjdk-demo is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135009" version="502" comment="java-1.6.0-openjdk-javadoc is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120135003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135010" version="502" comment="java-1.6.0-openjdk-javadoc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135011" version="502" comment="java-1.6.0-openjdk-src is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120135003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135012" version="502" comment="java-1.6.0-openjdk-src is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135013" version="502" comment="java-1.6.0-openjdk-devel is earlier than 1:1.6.0.0-1.43.1.10.6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120135003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120135014" version="502" comment="java-1.6.0-openjdk-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136005" version="502" comment="libvorbis is earlier than 1:1.2.3-4.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120136005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136006" version="502" comment="libvorbis is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136007" version="502" comment="libvorbis-devel-docs is earlier than 1:1.2.3-4.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120136005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136008" version="502" comment="libvorbis-devel-docs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136009" version="502" comment="libvorbis-devel is earlier than 1:1.2.3-4.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120136005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136010" version="502" comment="libvorbis-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136012" version="502" comment="libvorbis is earlier than 1:1.1.0-4.el4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120136007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136013" version="502" comment="libvorbis is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136014" version="502" comment="libvorbis-devel is earlier than 1:1.1.0-4.el4.5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120136007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136015" version="502" comment="libvorbis-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136017" version="502" comment="libvorbis is earlier than 1:1.1.2-3.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120136009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136018" version="502" comment="libvorbis is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136019" version="502" comment="libvorbis-devel is earlier than 1:1.1.2-3.el5_7.6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120136009" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120136020" version="502" comment="libvorbis-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120136007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137005" version="502" comment="texlive is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137006" version="502" comment="texlive is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137007" version="502" comment="texlive-latex is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137008" version="502" comment="texlive-latex is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137009" version="502" comment="texlive-dvips is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137010" version="502" comment="texlive-dvips is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137011" version="502" comment="kpathsea-devel is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137012" version="502" comment="kpathsea-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137013" version="502" comment="texlive-xetex is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137014" version="502" comment="texlive-xetex is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137015" version="502" comment="texlive-utils is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137016" version="502" comment="texlive-utils is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137017" version="502" comment="kpathsea is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137018" version="502" comment="kpathsea is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137019" version="502" comment="mendexk is earlier than 0:2.6e-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137020" version="502" comment="mendexk is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137021" version="502" comment="texlive-east-asian is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137022" version="502" comment="texlive-east-asian is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137023" version="502" comment="texlive-afm is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137024" version="502" comment="texlive-afm is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137025" version="502" comment="texlive-context is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137026" version="502" comment="texlive-context is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137027" version="502" comment="texlive-dviutils is earlier than 0:2007-57.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120137003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120137028" version="502" comment="texlive-dviutils is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120137016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139005" version="502" comment="java-1.6.0-sun is earlier than 1:1.6.0.31-1jpp.1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120139005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139006" version="502" comment="java-1.6.0-sun is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139007" version="502" comment="java-1.6.0-sun-src is earlier than 1:1.6.0.31-1jpp.1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120139005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139008" version="502" comment="java-1.6.0-sun-src is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139009" version="502" comment="java-1.6.0-sun-plugin is earlier than 1:1.6.0.31-1jpp.1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120139005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139010" version="502" comment="java-1.6.0-sun-plugin is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139011" version="502" comment="java-1.6.0-sun-jdbc is earlier than 1:1.6.0.31-1jpp.1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120139005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139012" version="502" comment="java-1.6.0-sun-jdbc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139013" version="502" comment="java-1.6.0-sun-devel is earlier than 1:1.6.0.31-1jpp.1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120139005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139014" version="502" comment="java-1.6.0-sun-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139015" version="502" comment="java-1.6.0-sun-demo is earlier than 1:1.6.0.31-1jpp.1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120139005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120139016" version="502" comment="java-1.6.0-sun-demo is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120139010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120140005" version="502" comment="thunderbird is earlier than 0:3.1.18-2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120140003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120141002" version="502" comment="seamonkey is earlier than 0:1.0.9-79.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120141003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120141004" version="502" comment="seamonkey-devel is earlier than 0:1.0.9-79.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120141003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120141006" version="502" comment="seamonkey-js-debugger is earlier than 0:1.0.9-79.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120141003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120141008" version="502" comment="seamonkey-mail is earlier than 0:1.0.9-79.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120141003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120141010" version="502" comment="seamonkey-chat is earlier than 0:1.0.9-79.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120141003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120141012" version="502" comment="seamonkey-dom-inspector is earlier than 0:1.0.9-79.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120084006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120141003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120142002" version="502" comment="firefox is earlier than 0:3.6.26-3.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120142003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120143005" version="502" comment="xulrunner is earlier than 0:1.9.2.26-2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120143004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120143007" version="502" comment="xulrunner-devel is earlier than 0:1.9.2.26-2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120143004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120143010" version="502" comment="xulrunner is earlier than 0:1.9.2.26-2.el5_7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120143006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120143012" version="502" comment="xulrunner-devel is earlier than 0:1.9.2.26-2.el5_7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120143006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120144005" version="503" comment="flash-plugin is earlier than 0:10.3.183.15-1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120144005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120144004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120144006" version="503" comment="flash-plugin is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120144005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150002" version="504" comment="kernel is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150004" version="504" comment="kernel-headers is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150006" version="504" comment="kernel-debug is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150008" version="504" comment="kernel-debug-devel is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150010" version="504" comment="kernel-xen-devel is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150012" version="504" comment="kernel-devel is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150014" version="504" comment="kernel-xen is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150016" version="504" comment="kernel-kdump is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150018" version="504" comment="kernel-kdump-devel is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150020" version="504" comment="kernel-PAE is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150022" version="504" comment="kernel-PAE-devel is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120150024" version="504" comment="kernel-doc is earlier than 0:2.6.18-308.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120150003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120152002" version="504" comment="kexec-tools is earlier than 0:1.102pre-154.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120152002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120152003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120152003" version="504" comment="kexec-tools is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120152002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120153002" version="504" comment="sos is earlier than 0:1.7-9.62.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120153002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120153003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120153003" version="504" comment="sos is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120153002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301002" version="504" comment="ImageMagick is earlier than 0:6.2.8.0-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120301003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301003" version="504" comment="ImageMagick is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301004" version="504" comment="ImageMagick-perl is earlier than 0:6.2.8.0-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120301003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301005" version="504" comment="ImageMagick-perl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301006" version="504" comment="ImageMagick-devel is earlier than 0:6.2.8.0-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120301003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301007" version="504" comment="ImageMagick-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301008" version="504" comment="ImageMagick-c++ is earlier than 0:6.2.8.0-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120301003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301009" version="504" comment="ImageMagick-c++ is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301010" version="504" comment="ImageMagick-c++-devel is earlier than 0:6.2.8.0-12.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120301003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120301011" version="504" comment="ImageMagick-c++-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120302002" version="504" comment="cups is earlier than 1:1.3.7-30.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120302002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120302003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120302003" version="504" comment="cups is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120302002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120302004" version="504" comment="cups-libs is earlier than 1:1.3.7-30.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120302003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120302003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120302005" version="504" comment="cups-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120302003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120302006" version="504" comment="cups-devel is earlier than 1:1.3.7-30.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120302004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120302003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120302007" version="504" comment="cups-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120302004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120302008" version="504" comment="cups-lpd is earlier than 1:1.3.7-30.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120302005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120302003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120302009" version="504" comment="cups-lpd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120302005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306002" version="504" comment="krb5 is earlier than 0:1.6.1-70.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120306003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306003" version="504" comment="krb5 is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306004" version="504" comment="krb5-devel is earlier than 0:1.6.1-70.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120306003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306005" version="504" comment="krb5-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306006" version="504" comment="krb5-libs is earlier than 0:1.6.1-70.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120306003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306007" version="504" comment="krb5-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306008" version="504" comment="krb5-workstation is earlier than 0:1.6.1-70.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120306003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306009" version="504" comment="krb5-workstation is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306010" version="504" comment="krb5-server is earlier than 0:1.6.1-70.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120306003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306011" version="504" comment="krb5-server is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306012" version="504" comment="krb5-server-ldap is earlier than 0:1.6.1-70.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120306003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120306013" version="504" comment="krb5-server-ldap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120306007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120307002" version="504" comment="util-linux is earlier than 0:2.13-0.59.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120307002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120307003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120307003" version="504" comment="util-linux is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120307002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120308002" version="504" comment="busybox is earlier than 1:1.2.0-13.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120308002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120308003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120308003" version="504" comment="busybox is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120308002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120308004" version="504" comment="busybox-anaconda is earlier than 1:1.2.0-13.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120308003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120308003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120308005" version="504" comment="busybox-anaconda is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120308003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120309002" version="504" comment="sudo is earlier than 0:1.7.2p1-13.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120309002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120309003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120309003" version="504" comment="sudo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120309002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120310002" version="504" comment="nfs-utils is earlier than 1:1.0.9-60.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120310002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120310003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120310003" version="504" comment="nfs-utils is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120310002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120311002" version="504" comment="ibutils is earlier than 0:1.2-11.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120311002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120311003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120311003" version="504" comment="ibutils is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120311002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120311004" version="504" comment="ibutils-devel is earlier than 0:1.2-11.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120311003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120311003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120311005" version="504" comment="ibutils-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120311003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120311006" version="504" comment="ibutils-libs is earlier than 0:1.2-11.2.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120311004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120311003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120311007" version="504" comment="ibutils-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120311004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120312002" version="504" comment="initscripts is earlier than 0:8.45.42-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120312002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120312003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120312003" version="504" comment="initscripts is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120312002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313002" version="504" comment="samba is earlier than 0:3.0.33-3.37.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120313003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313003" version="504" comment="samba is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313004" version="504" comment="samba-swat is earlier than 0:3.0.33-3.37.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120313003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313005" version="504" comment="samba-swat is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313006" version="504" comment="libsmbclient-devel is earlier than 0:3.0.33-3.37.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120313003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313007" version="504" comment="libsmbclient-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313008" version="504" comment="samba-client is earlier than 0:3.0.33-3.37.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120313003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313009" version="504" comment="samba-client is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313010" version="504" comment="samba-common is earlier than 0:3.0.33-3.37.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120313003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313011" version="504" comment="samba-common is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313012" version="504" comment="libsmbclient is earlier than 0:3.0.33-3.37.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120313003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120313013" version="504" comment="libsmbclient is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317005" version="502" comment="libpng is earlier than 2:1.2.46-2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317006" version="502" comment="libpng is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317007" version="502" comment="libpng-devel is earlier than 2:1.2.46-2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317008" version="502" comment="libpng-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317009" version="502" comment="libpng-static is earlier than 2:1.2.46-2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317010" version="502" comment="libpng-static is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317012" version="502" comment="libpng is earlier than 2:1.2.7-9.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317013" version="502" comment="libpng is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317014" version="502" comment="libpng-devel is earlier than 2:1.2.7-9.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317015" version="502" comment="libpng-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317016" version="502" comment="libpng10 is earlier than 0:1.0.16-10.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317017" version="502" comment="libpng10 is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317018" version="502" comment="libpng10-devel is earlier than 0:1.0.16-10.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317019" version="502" comment="libpng10-devel is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317021" version="502" comment="libpng is earlier than 2:1.2.10-15.el5_7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317010" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317022" version="502" comment="libpng is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317023" version="502" comment="libpng-devel is earlier than 2:1.2.10-15.el5_7" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120317010" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120317024" version="502" comment="libpng-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120321002" version="502" comment="cvs is earlier than 0:1.11.22-11.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120321002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120321004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120321003" version="502" comment="cvs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120321002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120321004" version="502" comment="cvs-inetd is earlier than 0:1.11.22-11.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120321003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120321004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120321005" version="502" comment="cvs-inetd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120321003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120321010" version="502" comment="cvs is earlier than 0:1.11.23-11.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120321002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120321006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120321011" version="502" comment="cvs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120321002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322002" version="502" comment="java-1.6.0-openjdk is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120322003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322003" version="502" comment="java-1.6.0-openjdk is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322004" version="502" comment="java-1.6.0-openjdk-devel is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120322003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322005" version="502" comment="java-1.6.0-openjdk-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322006" version="502" comment="java-1.6.0-openjdk-src is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120322003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322007" version="502" comment="java-1.6.0-openjdk-src is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322008" version="502" comment="java-1.6.0-openjdk-javadoc is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120322003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322009" version="502" comment="java-1.6.0-openjdk-javadoc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322010" version="502" comment="java-1.6.0-openjdk-demo is earlier than 1:1.6.0.0-1.25.1.10.6.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120322003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120322011" version="502" comment="java-1.6.0-openjdk-demo is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120135006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120323002" version="502" comment="httpd is earlier than 0:2.2.3-63.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120323003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120323003" version="502" comment="httpd is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120323004" version="502" comment="httpd-manual is earlier than 0:2.2.3-63.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120323003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120323005" version="502" comment="httpd-manual is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120323006" version="502" comment="httpd-devel is earlier than 0:2.2.3-63.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120323003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120323007" version="502" comment="httpd-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120323008" version="502" comment="mod_ssl is earlier than 0:2.2.3-63.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120323003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120323009" version="502" comment="mod_ssl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120128008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120324002" version="502" comment="libxml2 is earlier than 0:2.6.26-2.1.15.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120324004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120324004" version="502" comment="libxml2-python is earlier than 0:2.6.26-2.1.15.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120324004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120324006" version="502" comment="libxml2-devel is earlier than 0:2.6.26-2.1.15.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120324004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120324012" version="502" comment="libxml2 is earlier than 0:2.7.6-4.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120324006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120324014" version="502" comment="libxml2-static is earlier than 0:2.7.6-4.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120018008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120324006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120324016" version="502" comment="libxml2-devel is earlier than 0:2.7.6-4.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120324006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120324018" version="502" comment="libxml2-python is earlier than 0:2.7.6-4.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120016004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120324006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332002" version="502" comment="samba is earlier than 0:3.0.33-3.38.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332004" version="502" comment="libsmbclient is earlier than 0:3.0.33-3.38.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332006" version="502" comment="samba-common is earlier than 0:3.0.33-3.38.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332008" version="502" comment="samba-client is earlier than 0:3.0.33-3.38.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332010" version="502" comment="libsmbclient-devel is earlier than 0:3.0.33-3.38.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332012" version="502" comment="samba-swat is earlier than 0:3.0.33-3.38.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332015" version="502" comment="samba is earlier than 0:3.0.33-0.35.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332016" version="502" comment="samba is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332017" version="502" comment="samba-common is earlier than 0:3.0.33-0.35.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332018" version="502" comment="samba-common is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332019" version="502" comment="samba-swat is earlier than 0:3.0.33-0.35.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332020" version="502" comment="samba-swat is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332021" version="502" comment="samba-client is earlier than 0:3.0.33-0.35.el4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120332006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120332022" version="502" comment="samba-client is signed with Red Hat master key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006001" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120349002" version="503" comment="redhat-release is earlier than 0:4Desktop-10.10" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120349003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120349004" version="503" comment="redhat-release is earlier than 0:4WS-10.10" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120349004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120349005" version="503" comment="redhat-release is earlier than 0:4ES-10.10" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120349005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120349006" version="503" comment="redhat-release is earlier than 0:4AS-10.10" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120006001" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120349006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350005" version="502" comment="kernel is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350007" version="502" comment="kernel-headers is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350009" version="502" comment="kernel-bootwrapper is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350011" version="502" comment="kernel-debug-devel is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350013" version="502" comment="kernel-debug is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350015" version="502" comment="perf is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350017" version="502" comment="kernel-devel is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350019" version="502" comment="python-perf is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350021" version="502" comment="kernel-kdump-devel is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350023" version="502" comment="kernel-kdump is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350025" version="502" comment="kernel-firmware is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120350027" version="502" comment="kernel-doc is earlier than 0:2.6.32-220.7.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120350003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120359002" version="502" comment="flash-plugin is earlier than 0:10.3.183.16-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120144005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120359004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120359003" version="502" comment="flash-plugin is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120144005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120359008" version="502" comment="flash-plugin is earlier than 0:10.3.183.16-1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120144005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120359006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120369005" version="502" comment="python-sqlalchemy is earlier than 0:0.5.5-3.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120369005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120369003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120369006" version="502" comment="python-sqlalchemy is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120369005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120370002" version="502" comment="xen is earlier than 0:3.0.3-135.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120370002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120370003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120370003" version="502" comment="xen is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120370002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120370004" version="502" comment="xen-libs is earlier than 0:3.0.3-135.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120370003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120370003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120370005" version="502" comment="xen-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120370003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120370006" version="502" comment="xen-devel is earlier than 0:3.0.3-135.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120370004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120370003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120370007" version="502" comment="xen-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120370004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376002" version="502" comment="systemtap is earlier than 0:1.6-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376003" version="502" comment="systemtap is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376004" version="502" comment="systemtap-testsuite is earlier than 0:1.6-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376005" version="502" comment="systemtap-testsuite is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376006" version="502" comment="systemtap-runtime is earlier than 0:1.6-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376007" version="502" comment="systemtap-runtime is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376008" version="502" comment="systemtap-initscript is earlier than 0:1.6-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376009" version="502" comment="systemtap-initscript is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376010" version="502" comment="systemtap-server is earlier than 0:1.6-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376011" version="502" comment="systemtap-server is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376012" version="502" comment="systemtap-sdt-devel is earlier than 0:1.6-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376013" version="502" comment="systemtap-sdt-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376018" version="502" comment="systemtap is earlier than 0:1.6-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376019" version="502" comment="systemtap is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376020" version="502" comment="systemtap-runtime is earlier than 0:1.6-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376021" version="502" comment="systemtap-runtime is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376022" version="502" comment="systemtap-initscript is earlier than 0:1.6-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376023" version="502" comment="systemtap-initscript is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376024" version="502" comment="systemtap-grapher is earlier than 0:1.6-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376025" version="502" comment="systemtap-grapher is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376026" version="502" comment="systemtap-server is earlier than 0:1.6-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376027" version="502" comment="systemtap-server is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376028" version="502" comment="systemtap-testsuite is earlier than 0:1.6-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376029" version="502" comment="systemtap-testsuite is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376030" version="502" comment="systemtap-sdt-devel is earlier than 0:1.6-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120376006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120376031" version="502" comment="systemtap-sdt-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120376007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120387002" version="502" comment="xulrunner is earlier than 0:10.0.3-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120387004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120387004" version="502" comment="xulrunner-devel is earlier than 0:10.0.3-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120387004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120387006" version="502" comment="firefox is earlier than 0:10.0.3-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120387004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120387012" version="502" comment="xulrunner is earlier than 0:10.0.3-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120387007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120387014" version="502" comment="xulrunner-devel is earlier than 0:10.0.3-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120387007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120387016" version="502" comment="firefox is earlier than 0:10.0.3-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120387007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120388002" version="502" comment="thunderbird is earlier than 0:10.0.3-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120387004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120388008" version="502" comment="thunderbird is earlier than 0:10.0.3-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120387007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120393005" version="502" comment="glibc is earlier than 0:2.12-1.47.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120393003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120393007" version="502" comment="glibc-utils is earlier than 0:2.12-1.47.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120393003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120393009" version="502" comment="glibc-common is earlier than 0:2.12-1.47.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120393003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120393011" version="502" comment="glibc-static is earlier than 0:2.12-1.47.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120393003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120393013" version="502" comment="nscd is earlier than 0:2.12-1.47.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120393003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120393015" version="502" comment="glibc-headers is earlier than 0:2.12-1.47.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120393003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120393017" version="502" comment="glibc-devel is earlier than 0:2.12-1.47.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120393003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120397002" version="502" comment="glibc is earlier than 0:2.5-81.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120397003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120397004" version="502" comment="glibc-utils is earlier than 0:2.5-81.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120397003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120397006" version="502" comment="glibc-headers is earlier than 0:2.5-81.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120397003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120397008" version="502" comment="glibc-devel is earlier than 0:2.5-81.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120397003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120397010" version="502" comment="glibc-common is earlier than 0:2.5-81.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120397003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120397012" version="502" comment="nscd is earlier than 0:2.5-81.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120058006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120397003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120407002" version="502" comment="libpng is earlier than 2:1.2.10-16.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120407004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120407004" version="502" comment="libpng-devel is earlier than 2:1.2.10-16.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120407004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120407010" version="502" comment="libpng is earlier than 2:1.2.48-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120407006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120407012" version="502" comment="libpng-static is earlier than 2:1.2.48-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120407006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120407014" version="502" comment="libpng-devel is earlier than 2:1.2.48-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120407006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120410005" version="502" comment="raptor is earlier than 0:1.4.18-5.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120410005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120410003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120410006" version="502" comment="raptor is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120410005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120410007" version="502" comment="raptor-devel is earlier than 0:1.4.18-5.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120410006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120410003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120410008" version="502" comment="raptor-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120410006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411002" version="502" comment="openoffice.org is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411003" version="502" comment="openoffice.org is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411004" version="502" comment="openoffice.org-langpack-ur is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411005" version="502" comment="openoffice.org-langpack-ur is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411006" version="502" comment="openoffice.org-core is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411007" version="502" comment="openoffice.org-core is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411008" version="502" comment="openoffice.org-langpack-es is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411009" version="502" comment="openoffice.org-langpack-es is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411010" version="502" comment="openoffice.org-langpack-gu_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411011" version="502" comment="openoffice.org-langpack-gu_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411012" version="502" comment="openoffice.org-langpack-sl_SI is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411013" version="502" comment="openoffice.org-langpack-sl_SI is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411014" version="502" comment="openoffice.org-writer is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411015" version="502" comment="openoffice.org-writer is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411016" version="502" comment="openoffice.org-langpack-nr_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411017" version="502" comment="openoffice.org-langpack-nr_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411018" version="502" comment="openoffice.org-langpack-zu_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411019" version="502" comment="openoffice.org-langpack-zu_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411020" version="502" comment="openoffice.org-langpack-lt_LT is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411021" version="502" comment="openoffice.org-langpack-lt_LT is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411022" version="502" comment="openoffice.org-langpack-pl_PL is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411023" version="502" comment="openoffice.org-langpack-pl_PL is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411024" version="502" comment="openoffice.org-langpack-bn is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411025" version="502" comment="openoffice.org-langpack-bn is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411026" version="502" comment="openoffice.org-sdk is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411027" version="502" comment="openoffice.org-sdk is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411028" version="502" comment="openoffice.org-impress is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411029" version="502" comment="openoffice.org-impress is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411030" version="502" comment="openoffice.org-langpack-ms_MY is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411031" version="502" comment="openoffice.org-langpack-ms_MY is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411032" version="502" comment="openoffice.org-base is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411033" version="502" comment="openoffice.org-base is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411034" version="502" comment="openoffice.org-xsltfilter is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411035" version="502" comment="openoffice.org-xsltfilter is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411036" version="502" comment="openoffice.org-langpack-ve_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411037" version="502" comment="openoffice.org-langpack-ve_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411038" version="502" comment="openoffice.org-ure is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411039" version="502" comment="openoffice.org-ure is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411040" version="502" comment="openoffice.org-langpack-ja_JP is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411041" version="502" comment="openoffice.org-langpack-ja_JP is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411042" version="502" comment="openoffice.org-langpack-eu_ES is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411043" version="502" comment="openoffice.org-langpack-eu_ES is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411044" version="502" comment="openoffice.org-langpack-gl_ES is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411045" version="502" comment="openoffice.org-langpack-gl_ES is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411046" version="502" comment="openoffice.org-langpack-pt_PT is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411047" version="502" comment="openoffice.org-langpack-pt_PT is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411048" version="502" comment="openoffice.org-headless is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411049" version="502" comment="openoffice.org-headless is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411050" version="502" comment="openoffice.org-langpack-ta_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411051" version="502" comment="openoffice.org-langpack-ta_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411052" version="502" comment="openoffice.org-langpack-de is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411053" version="502" comment="openoffice.org-langpack-de is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411054" version="502" comment="openoffice.org-langpack-zh_TW is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411055" version="502" comment="openoffice.org-langpack-zh_TW is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411056" version="502" comment="openoffice.org-langpack-ca_ES is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411057" version="502" comment="openoffice.org-langpack-ca_ES is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411058" version="502" comment="openoffice.org-pyuno is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411059" version="502" comment="openoffice.org-pyuno is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411060" version="502" comment="openoffice.org-math is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411031" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411061" version="502" comment="openoffice.org-math is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411031" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411062" version="502" comment="openoffice.org-langpack-da_DK is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411063" version="502" comment="openoffice.org-langpack-da_DK is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411064" version="502" comment="openoffice.org-langpack-ts_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411033" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411065" version="502" comment="openoffice.org-langpack-ts_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411033" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411066" version="502" comment="openoffice.org-langpack-ga_IE is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411034" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411067" version="502" comment="openoffice.org-langpack-ga_IE is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411034" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411068" version="502" comment="openoffice.org-langpack-sk_SK is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411035" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411069" version="502" comment="openoffice.org-langpack-sk_SK is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411035" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411070" version="502" comment="openoffice.org-calc is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411036" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411071" version="502" comment="openoffice.org-calc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411036" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411072" version="502" comment="openoffice.org-langpack-he_IL is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411037" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411073" version="502" comment="openoffice.org-langpack-he_IL is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411037" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411074" version="502" comment="openoffice.org-langpack-te_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411038" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411075" version="502" comment="openoffice.org-langpack-te_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411038" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411076" version="502" comment="openoffice.org-langpack-bg_BG is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411039" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411077" version="502" comment="openoffice.org-langpack-bg_BG is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411039" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411078" version="502" comment="openoffice.org-langpack-af_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411040" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411079" version="502" comment="openoffice.org-langpack-af_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411040" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411080" version="502" comment="openoffice.org-langpack-cs_CZ is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411041" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411081" version="502" comment="openoffice.org-langpack-cs_CZ is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411041" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411082" version="502" comment="openoffice.org-draw is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411042" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411083" version="502" comment="openoffice.org-draw is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411042" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411084" version="502" comment="openoffice.org-langpack-kn_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411043" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411085" version="502" comment="openoffice.org-langpack-kn_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411043" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411086" version="502" comment="openoffice.org-sdk-doc is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411044" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411087" version="502" comment="openoffice.org-sdk-doc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411044" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411088" version="502" comment="openoffice.org-langpack-hu_HU is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411045" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411089" version="502" comment="openoffice.org-langpack-hu_HU is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411045" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411090" version="502" comment="openoffice.org-langpack-sr_CS is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411046" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411091" version="502" comment="openoffice.org-langpack-sr_CS is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411046" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411092" version="502" comment="openoffice.org-javafilter is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411047" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411093" version="502" comment="openoffice.org-javafilter is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411047" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411094" version="502" comment="openoffice.org-langpack-nso_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411048" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411095" version="502" comment="openoffice.org-langpack-nso_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411048" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411096" version="502" comment="openoffice.org-langpack-st_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411049" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411097" version="502" comment="openoffice.org-langpack-st_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411049" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411098" version="502" comment="openoffice.org-langpack-it is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411050" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411099" version="502" comment="openoffice.org-langpack-it is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411050" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411100" version="502" comment="openoffice.org-langpack-mr_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411051" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411101" version="502" comment="openoffice.org-langpack-mr_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411051" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411102" version="502" comment="openoffice.org-langpack-pa_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411052" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411103" version="502" comment="openoffice.org-langpack-pa_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411052" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411104" version="502" comment="openoffice.org-langpack-et_EE is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411053" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411105" version="502" comment="openoffice.org-langpack-et_EE is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411053" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411106" version="502" comment="openoffice.org-langpack-hi_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411054" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411107" version="502" comment="openoffice.org-langpack-hi_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411054" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411108" version="502" comment="openoffice.org-langpack-or_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411055" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411109" version="502" comment="openoffice.org-langpack-or_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411055" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411110" version="502" comment="openoffice.org-testtools is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411056" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411111" version="502" comment="openoffice.org-testtools is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411056" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411112" version="502" comment="openoffice.org-langpack-tr_TR is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411057" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411113" version="502" comment="openoffice.org-langpack-tr_TR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411057" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411114" version="502" comment="openoffice.org-langpack-ml_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411058" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411115" version="502" comment="openoffice.org-langpack-ml_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411058" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411116" version="502" comment="openoffice.org-langpack-el_GR is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411059" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411117" version="502" comment="openoffice.org-langpack-el_GR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411059" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411118" version="502" comment="openoffice.org-langpack-ar is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411060" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411119" version="502" comment="openoffice.org-langpack-ar is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411060" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411120" version="502" comment="openoffice.org-langpack-nl is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411061" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411121" version="502" comment="openoffice.org-langpack-nl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411061" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411122" version="502" comment="openoffice.org-langpack-sv is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411062" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411123" version="502" comment="openoffice.org-langpack-sv is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411062" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411124" version="502" comment="openoffice.org-langpack-nb_NO is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411063" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411125" version="502" comment="openoffice.org-langpack-nb_NO is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411063" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411126" version="502" comment="openoffice.org-langpack-as_IN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411064" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411127" version="502" comment="openoffice.org-langpack-as_IN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411064" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411128" version="502" comment="openoffice.org-langpack-fr is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411065" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411129" version="502" comment="openoffice.org-langpack-fr is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411065" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411130" version="502" comment="openoffice.org-langpack-ko_KR is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411066" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411131" version="502" comment="openoffice.org-langpack-ko_KR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411066" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411132" version="502" comment="openoffice.org-langpack-zh_CN is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411067" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411133" version="502" comment="openoffice.org-langpack-zh_CN is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411067" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411134" version="502" comment="openoffice.org-langpack-fi_FI is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411068" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411135" version="502" comment="openoffice.org-langpack-fi_FI is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411068" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411136" version="502" comment="openoffice.org-langpack-cy_GB is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411069" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411137" version="502" comment="openoffice.org-langpack-cy_GB is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411069" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411138" version="502" comment="openoffice.org-langpack-hr_HR is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411070" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411139" version="502" comment="openoffice.org-langpack-hr_HR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411070" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411140" version="502" comment="openoffice.org-langpack-tn_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411071" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411141" version="502" comment="openoffice.org-langpack-tn_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411071" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411142" version="502" comment="openoffice.org-graphicfilter is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411072" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411143" version="502" comment="openoffice.org-graphicfilter is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411072" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411144" version="502" comment="openoffice.org-langpack-pt_BR is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411073" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411145" version="502" comment="openoffice.org-langpack-pt_BR is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411073" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411146" version="502" comment="openoffice.org-emailmerge is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411074" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411147" version="502" comment="openoffice.org-emailmerge is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411074" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411148" version="502" comment="openoffice.org-langpack-th_TH is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411075" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411149" version="502" comment="openoffice.org-langpack-th_TH is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411075" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411150" version="502" comment="openoffice.org-langpack-xh_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411076" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411151" version="502" comment="openoffice.org-langpack-xh_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411076" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411152" version="502" comment="openoffice.org-langpack-ss_ZA is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411077" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411153" version="502" comment="openoffice.org-langpack-ss_ZA is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411077" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411154" version="502" comment="openoffice.org-langpack-nn_NO is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411078" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411155" version="502" comment="openoffice.org-langpack-nn_NO is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411078" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411156" version="502" comment="openoffice.org-langpack-ru is earlier than 1:3.1.1-19.10.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411079" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120411003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120411157" version="502" comment="openoffice.org-langpack-ru is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120411079" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120426002" version="503" comment="openssl is earlier than 0:0.9.8e-22.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120426004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120426004" version="503" comment="openssl-devel is earlier than 0:0.9.8e-22.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120426004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120426006" version="503" comment="openssl-perl is earlier than 0:0.9.8e-22.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120426004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120426012" version="503" comment="openssl is earlier than 0:1.0.0-20.el6_2.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120426006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120426014" version="503" comment="openssl-static is earlier than 0:1.0.0-20.el6_2.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120426006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120426016" version="503" comment="openssl-devel is earlier than 0:1.0.0-20.el6_2.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120426006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120426018" version="503" comment="openssl-perl is earlier than 0:1.0.0-20.el6_2.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120426006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120427005" version="503" comment="libtasn1 is earlier than 0:2.3-3.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120427005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120427003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120427006" version="503" comment="libtasn1 is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120427005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120427007" version="503" comment="libtasn1-tools is earlier than 0:2.3-3.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120427006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120427003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120427008" version="503" comment="libtasn1-tools is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120427006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120427009" version="503" comment="libtasn1-devel is earlier than 0:2.3-3.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120427007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120427003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120427010" version="503" comment="libtasn1-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120427007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120428002" version="503" comment="gnutls is earlier than 0:1.4.1-7.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120428003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120428003" version="503" comment="gnutls is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120428004" version="503" comment="gnutls-utils is earlier than 0:1.4.1-7.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120428003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120428005" version="503" comment="gnutls-utils is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120428006" version="503" comment="gnutls-devel is earlier than 0:1.4.1-7.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120428003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120428007" version="503" comment="gnutls-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120429005" version="503" comment="gnutls is earlier than 0:2.8.5-4.el6_2.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120429003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120429006" version="503" comment="gnutls is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120429007" version="503" comment="gnutls-utils is earlier than 0:2.8.5-4.el6_2.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120429003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120429008" version="503" comment="gnutls-utils is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120429009" version="503" comment="gnutls-devel is earlier than 0:2.8.5-4.el6_2.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120429003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120429010" version="503" comment="gnutls-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120428004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120429011" version="503" comment="gnutls-guile is earlier than 0:2.8.5-4.el6_2.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120429008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120429003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120429012" version="503" comment="gnutls-guile is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120429008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120434002" version="503" comment="flash-plugin is earlier than 0:10.3.183.18-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120144005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120434004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120434008" version="503" comment="flash-plugin is earlier than 0:10.3.183.18-1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120144005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120434006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451002" version="504" comment="rpm is earlier than 0:4.4.2.3-28.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451003" version="504" comment="rpm is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451004" version="504" comment="rpm-devel is earlier than 0:4.4.2.3-28.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451005" version="504" comment="rpm-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451006" version="504" comment="rpm-libs is earlier than 0:4.4.2.3-28.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451007" version="504" comment="rpm-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451008" version="504" comment="rpm-python is earlier than 0:4.4.2.3-28.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451009" version="504" comment="rpm-python is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451010" version="504" comment="rpm-apidocs is earlier than 0:4.4.2.3-28.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451011" version="504" comment="rpm-apidocs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451012" version="504" comment="rpm-build is earlier than 0:4.4.2.3-28.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451013" version="504" comment="rpm-build is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451014" version="504" comment="popt is earlier than 0:1.10.2.3-28.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451015" version="504" comment="popt is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451020" version="504" comment="rpm is earlier than 0:4.8.0-19.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451021" version="504" comment="rpm is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451022" version="504" comment="rpm-apidocs is earlier than 0:4.8.0-19.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451023" version="504" comment="rpm-apidocs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451024" version="504" comment="rpm-cron is earlier than 0:4.8.0-19.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451025" version="504" comment="rpm-cron is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451026" version="504" comment="rpm-build is earlier than 0:4.8.0-19.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451027" version="504" comment="rpm-build is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451028" version="504" comment="rpm-devel is earlier than 0:4.8.0-19.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451029" version="504" comment="rpm-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451030" version="504" comment="rpm-python is earlier than 0:4.8.0-19.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451031" version="504" comment="rpm-python is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451032" version="504" comment="rpm-libs is earlier than 0:4.8.0-19.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120451008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120451033" version="504" comment="rpm-libs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120451004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465002" version="503" comment="samba is earlier than 0:3.0.33-3.39.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465004" version="503" comment="libsmbclient is earlier than 0:3.0.33-3.39.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465006" version="503" comment="samba-client is earlier than 0:3.0.33-3.39.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465008" version="503" comment="samba-swat is earlier than 0:3.0.33-3.39.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465010" version="503" comment="libsmbclient-devel is earlier than 0:3.0.33-3.39.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465012" version="503" comment="samba-common is earlier than 0:3.0.33-3.39.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465018" version="503" comment="samba is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465019" version="503" comment="samba is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465020" version="503" comment="samba-winbind-krb5-locator is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465021" version="503" comment="samba-winbind-krb5-locator is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465022" version="503" comment="samba-winbind-devel is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465023" version="503" comment="samba-winbind-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465024" version="503" comment="libsmbclient-devel is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465025" version="503" comment="libsmbclient-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465026" version="503" comment="samba-domainjoin-gui is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465027" version="503" comment="samba-domainjoin-gui is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465028" version="503" comment="samba-winbind-clients is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465029" version="503" comment="samba-winbind-clients is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465030" version="503" comment="samba-doc is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465031" version="503" comment="samba-doc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465032" version="503" comment="samba-swat is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465033" version="503" comment="samba-swat is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465034" version="503" comment="libsmbclient is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465035" version="503" comment="libsmbclient is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465036" version="503" comment="samba-client is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465037" version="503" comment="samba-client is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465038" version="503" comment="samba-common is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465039" version="503" comment="samba-common is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465040" version="503" comment="samba-winbind is earlier than 0:3.5.10-115.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120465006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120465041" version="503" comment="samba-winbind is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466002" version="503" comment="samba3x is earlier than 0:3.5.10-0.108.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120466003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466003" version="503" comment="samba3x is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466004" version="503" comment="samba3x-doc is earlier than 0:3.5.10-0.108.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120466003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466005" version="503" comment="samba3x-doc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466006" version="503" comment="samba3x-domainjoin-gui is earlier than 0:3.5.10-0.108.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120466003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466007" version="503" comment="samba3x-domainjoin-gui is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466008" version="503" comment="samba3x-winbind-devel is earlier than 0:3.5.10-0.108.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120466003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466009" version="503" comment="samba3x-winbind-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466010" version="503" comment="samba3x-client is earlier than 0:3.5.10-0.108.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120466003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466011" version="503" comment="samba3x-client is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466012" version="503" comment="samba3x-common is earlier than 0:3.5.10-0.108.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120466003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466013" version="503" comment="samba3x-common is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466014" version="503" comment="samba3x-swat is earlier than 0:3.5.10-0.108.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120466003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466015" version="503" comment="samba3x-swat is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466016" version="503" comment="samba3x-winbind is earlier than 0:3.5.10-0.108.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120466003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120466017" version="503" comment="samba3x-winbind is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467002" version="503" comment="freetype is earlier than 0:2.2.1-31.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120467004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467003" version="503" comment="freetype is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467004" version="503" comment="freetype-demos is earlier than 0:2.2.1-31.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120467004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467005" version="503" comment="freetype-demos is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467006" version="503" comment="freetype-devel is earlier than 0:2.2.1-31.el5_8.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120467004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467007" version="503" comment="freetype-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467012" version="503" comment="freetype is earlier than 0:2.3.11-6.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120467006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467013" version="503" comment="freetype is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467014" version="503" comment="freetype-devel is earlier than 0:2.3.11-6.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120467006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467015" version="503" comment="freetype-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467016" version="503" comment="freetype-demos is earlier than 0:2.3.11-6.el6_2.9" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120467006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120467017" version="503" comment="freetype-demos is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120467003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468002" version="503" comment="libtiff is earlier than 0:3.8.2-14.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120468004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468003" version="503" comment="libtiff is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468004" version="503" comment="libtiff-devel is earlier than 0:3.8.2-14.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120468004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468005" version="503" comment="libtiff-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468010" version="503" comment="libtiff is earlier than 0:3.9.4-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120468006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468011" version="503" comment="libtiff is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468012" version="503" comment="libtiff-devel is earlier than 0:3.9.4-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120468006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468013" version="503" comment="libtiff-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468014" version="503" comment="libtiff-static is earlier than 0:3.9.4-5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120468006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120468015" version="503" comment="libtiff-static is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120468008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120469002" version="503" comment="acroread is earlier than 0:9.5.1-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120469004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120469004" version="503" comment="acroread-plugin is earlier than 0:9.5.1-1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120469004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120469010" version="503" comment="acroread is earlier than 0:9.5.1-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120469006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120469012" version="503" comment="acroread-plugin is earlier than 0:9.5.1-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120011003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120469006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474002" version="504" comment="tomcat5 is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474003" version="504" comment="tomcat5 is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474004" version="504" comment="tomcat5-servlet-2.4-api-javadoc is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474005" version="504" comment="tomcat5-servlet-2.4-api-javadoc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474006" version="504" comment="tomcat5-admin-webapps is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474007" version="504" comment="tomcat5-admin-webapps is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474008" version="504" comment="tomcat5-jsp-2.0-api is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474009" version="504" comment="tomcat5-jsp-2.0-api is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474010" version="504" comment="tomcat5-jasper is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474011" version="504" comment="tomcat5-jasper is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474012" version="504" comment="tomcat5-server-lib is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474013" version="504" comment="tomcat5-server-lib is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474014" version="504" comment="tomcat5-jasper-javadoc is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474015" version="504" comment="tomcat5-jasper-javadoc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474016" version="504" comment="tomcat5-jsp-2.0-api-javadoc is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474017" version="504" comment="tomcat5-jsp-2.0-api-javadoc is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474018" version="504" comment="tomcat5-servlet-2.4-api is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474019" version="504" comment="tomcat5-servlet-2.4-api is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474020" version="504" comment="tomcat5-webapps is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474021" version="504" comment="tomcat5-webapps is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474022" version="504" comment="tomcat5-common-lib is earlier than 0:5.5.23-0jpp.31.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120474003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120474023" version="504" comment="tomcat5-common-lib is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120474012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475005" version="504" comment="tomcat6 is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475006" version="504" comment="tomcat6 is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475007" version="504" comment="tomcat6-servlet-2.5-api is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475008" version="504" comment="tomcat6-servlet-2.5-api is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475009" version="504" comment="tomcat6-docs-webapp is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475010" version="504" comment="tomcat6-docs-webapp is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475011" version="504" comment="tomcat6-el-2.1-api is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475012" version="504" comment="tomcat6-el-2.1-api is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475013" version="504" comment="tomcat6-admin-webapps is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475014" version="504" comment="tomcat6-admin-webapps is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475015" version="504" comment="tomcat6-jsp-2.1-api is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475016" version="504" comment="tomcat6-jsp-2.1-api is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475017" version="504" comment="tomcat6-lib is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475018" version="504" comment="tomcat6-lib is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475019" version="504" comment="tomcat6-javadoc is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475020" version="504" comment="tomcat6-javadoc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475021" version="504" comment="tomcat6-webapps is earlier than 0:6.0.24-36.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120475003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120475022" version="504" comment="tomcat6-webapps is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120475013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480002" version="503" comment="kernel is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480004" version="503" comment="kernel-headers is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480006" version="503" comment="kernel-xen-devel is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480008" version="503" comment="kernel-debug is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480010" version="503" comment="kernel-debug-devel is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480012" version="503" comment="kernel-devel is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480014" version="503" comment="kernel-xen is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480016" version="503" comment="kernel-kdump-devel is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480018" version="503" comment="kernel-kdump is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480020" version="503" comment="kernel-PAE is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480022" version="503" comment="kernel-PAE-devel is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120480024" version="503" comment="kernel-doc is earlier than 0:2.6.18-308.4.1.el5" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120480003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481005" version="503" comment="kernel is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481007" version="503" comment="kernel-bootwrapper is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481009" version="503" comment="kernel-headers is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481011" version="503" comment="perf is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481013" version="503" comment="kernel-debug-devel is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481015" version="503" comment="kernel-debug is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481017" version="503" comment="python-perf is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481019" version="503" comment="kernel-devel is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481021" version="503" comment="kernel-kdump is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481023" version="503" comment="kernel-kdump-devel is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481025" version="503" comment="kernel-firmware is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120481027" version="503" comment="kernel-doc is earlier than 0:2.6.32-220.13.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120481003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508005" version="503" comment="java-1.5.0-ibm is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120508004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508006" version="503" comment="java-1.5.0-ibm is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508007" version="503" comment="java-1.5.0-ibm-devel is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120508004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508008" version="503" comment="java-1.5.0-ibm-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508009" version="503" comment="java-1.5.0-ibm-src is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120508004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508010" version="503" comment="java-1.5.0-ibm-src is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508011" version="503" comment="java-1.5.0-ibm-demo is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120508004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508012" version="503" comment="java-1.5.0-ibm-demo is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508013" version="503" comment="java-1.5.0-ibm-jdbc is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120508004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508014" version="503" comment="java-1.5.0-ibm-jdbc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508015" version="503" comment="java-1.5.0-ibm-javacomm is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120508004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508016" version="503" comment="java-1.5.0-ibm-javacomm is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508017" version="503" comment="java-1.5.0-ibm-plugin is earlier than 1:1.5.0.13.1-1jpp.2.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120508004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120508018" version="503" comment="java-1.5.0-ibm-plugin is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120508011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120509005" version="503" comment="wireshark is earlier than 0:1.2.15-2.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120509005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120509003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120509006" version="503" comment="wireshark is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120509005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120509007" version="503" comment="wireshark-gnome is earlier than 0:1.2.15-2.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120509006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120509003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120509008" version="503" comment="wireshark-gnome is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120509006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120509009" version="503" comment="wireshark-devel is earlier than 0:1.2.15-2.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120509007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120509003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120509010" version="503" comment="wireshark-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120509007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120514005" version="503" comment="java-1.6.0-ibm is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120514004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120514007" version="503" comment="java-1.6.0-ibm-plugin is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120514004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120514009" version="503" comment="java-1.6.0-ibm-javacomm is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120514004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120514011" version="503" comment="java-1.6.0-ibm-devel is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120514004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120514013" version="503" comment="java-1.6.0-ibm-src is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120514004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120514015" version="503" comment="java-1.6.0-ibm-jdbc is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120514004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120514017" version="503" comment="java-1.6.0-ibm-demo is earlier than 1:1.6.0.10.1-1jpp.5.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120034008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120514004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120515002" version="503" comment="xulrunner is earlier than 0:10.0.4-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120515004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120515004" version="503" comment="xulrunner-devel is earlier than 0:10.0.4-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120515004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120515006" version="503" comment="firefox is earlier than 0:10.0.4-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120515004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120515012" version="503" comment="xulrunner is earlier than 0:10.0.4-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120515007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120515014" version="503" comment="xulrunner-devel is earlier than 0:10.0.4-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120515007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120515016" version="503" comment="firefox is earlier than 0:10.0.4-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120079007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120515007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120516002" version="503" comment="thunderbird is earlier than 0:10.0.4-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120515004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120516008" version="503" comment="thunderbird is earlier than 0:10.0.4-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120080005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120515007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518002" version="503" comment="openssl is earlier than 0:0.9.8e-22.el5_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518004" version="503" comment="openssl-devel is earlier than 0:0.9.8e-22.el5_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518006" version="503" comment="openssl-perl is earlier than 0:0.9.8e-22.el5_8.3" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518008" version="503" comment="openssl097a is earlier than 0:0.9.7a-11.el5_8.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120518005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518005" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518009" version="503" comment="openssl097a is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120518005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518014" version="503" comment="openssl is earlier than 0:1.0.0-20.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518016" version="503" comment="openssl-devel is earlier than 0:1.0.0-20.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518018" version="503" comment="openssl-perl is earlier than 0:1.0.0-20.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518020" version="503" comment="openssl-static is earlier than 0:1.0.0-20.el6_2.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120059008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518007" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518022" version="503" comment="openssl098e is earlier than 0:0.9.8e-17.el6_2.2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120518011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120518008" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120518023" version="503" comment="openssl098e is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120518011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120523002" version="501" comment="libpng is earlier than 2:1.2.10-17.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120523004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120523004" version="501" comment="libpng-devel is earlier than 2:1.2.10-17.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120523004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120523010" version="501" comment="libpng is earlier than 2:1.2.49-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120523006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120523012" version="501" comment="libpng-devel is earlier than 2:1.2.49-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120523006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120523014" version="501" comment="libpng-static is earlier than 2:1.2.49-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120317007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120523006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533002" version="501" comment="samba3x is earlier than 0:3.5.10-0.109.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533004" version="501" comment="samba3x-common is earlier than 0:3.5.10-0.109.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533006" version="501" comment="samba3x-swat is earlier than 0:3.5.10-0.109.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533008" version="501" comment="samba3x-doc is earlier than 0:3.5.10-0.109.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533010" version="501" comment="samba3x-domainjoin-gui is earlier than 0:3.5.10-0.109.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533012" version="501" comment="samba3x-client is earlier than 0:3.5.10-0.109.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533014" version="501" comment="samba3x-winbind is earlier than 0:3.5.10-0.109.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533016" version="501" comment="samba3x-winbind-devel is earlier than 0:3.5.10-0.109.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120466005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533022" version="501" comment="samba is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533024" version="501" comment="libsmbclient is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533026" version="501" comment="samba-winbind-krb5-locator is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533028" version="501" comment="samba-winbind is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533030" version="501" comment="samba-swat is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533032" version="501" comment="samba-winbind-clients is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533034" version="501" comment="samba-client is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533036" version="501" comment="samba-winbind-devel is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533038" version="501" comment="samba-domainjoin-gui is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533040" version="501" comment="samba-doc is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120465016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533042" version="501" comment="libsmbclient-devel is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120533044" version="501" comment="samba-common is earlier than 0:3.5.10-116.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120313006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120533006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544005" version="501" comment="ImageMagick is earlier than 0:6.5.4.7-6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120544003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544006" version="501" comment="ImageMagick is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544007" version="501" comment="ImageMagick-perl is earlier than 0:6.5.4.7-6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120544003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544008" version="501" comment="ImageMagick-perl is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544009" version="501" comment="ImageMagick-devel is earlier than 0:6.5.4.7-6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120544003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544010" version="501" comment="ImageMagick-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544011" version="501" comment="ImageMagick-doc is earlier than 0:6.5.4.7-6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120544008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120544003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544012" version="501" comment="ImageMagick-doc is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120544008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544013" version="501" comment="ImageMagick-c++ is earlier than 0:6.5.4.7-6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120544003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544014" version="501" comment="ImageMagick-c++ is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544015" version="501" comment="ImageMagick-c++-devel is earlier than 0:6.5.4.7-6.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120544003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120544016" version="501" comment="ImageMagick-c++-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120545002" version="501" comment="ImageMagick is earlier than 0:6.2.8.0-15.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120545003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120545004" version="501" comment="ImageMagick-c++-devel is earlier than 0:6.2.8.0-15.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120545003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120545006" version="501" comment="ImageMagick-perl is earlier than 0:6.2.8.0-15.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120545003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120545008" version="501" comment="ImageMagick-c++ is earlier than 0:6.2.8.0-15.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120545003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120545010" version="501" comment="ImageMagick-devel is earlier than 0:6.2.8.0-15.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120301004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120545003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546002" version="501" comment="php is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546004" version="501" comment="php-xml is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546006" version="501" comment="php-cli is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546008" version="501" comment="php-pdo is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546010" version="501" comment="php-devel is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546012" version="501" comment="php-gd is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546014" version="501" comment="php-ldap is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546016" version="501" comment="php-common is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546018" version="501" comment="php-bcmath is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546020" version="501" comment="php-xmlrpc is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546022" version="501" comment="php-dba is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546024" version="501" comment="php-imap is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546026" version="501" comment="php-snmp is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546028" version="501" comment="php-soap is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546030" version="501" comment="php-ncurses is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120033008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546032" version="501" comment="php-odbc is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546034" version="501" comment="php-mysql is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546036" version="501" comment="php-mbstring is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546038" version="501" comment="php-pgsql is earlier than 0:5.1.6-34.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546044" version="501" comment="php is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546046" version="501" comment="php-bcmath is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019022" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546048" version="501" comment="php-imap is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546050" version="501" comment="php-cli is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546052" version="501" comment="php-gd is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546054" version="501" comment="php-ldap is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019021" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546056" version="501" comment="php-zts is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019029" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546058" version="501" comment="php-devel is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019023" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546060" version="501" comment="php-enchant is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546062" version="501" comment="php-mysql is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546064" version="501" comment="php-mbstring is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019028" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546066" version="501" comment="php-tidy is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019030" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546068" version="501" comment="php-snmp is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019018" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546070" version="501" comment="php-odbc is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019017" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546072" version="501" comment="php-intl is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019016" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546074" version="501" comment="php-soap is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546076" version="501" comment="php-pgsql is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019026" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546078" version="501" comment="php-common is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546080" version="501" comment="php-process is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019025" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546082" version="501" comment="php-embedded is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546084" version="501" comment="php-pdo is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019020" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546086" version="501" comment="php-xmlrpc is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546088" version="501" comment="php-recode is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546090" version="501" comment="php-xml is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546092" version="501" comment="php-pspell is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120546094" version="501" comment="php-dba is earlier than 0:5.3.3-3.el6_2.8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019014" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120546006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547002" version="501" comment="php53 is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019032" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547004" version="501" comment="php53-snmp is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019050" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547006" version="501" comment="php53-cli is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019051" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547008" version="501" comment="php53-dba is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019036" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547010" version="501" comment="php53-pdo is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019042" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547012" version="501" comment="php53-soap is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019040" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547014" version="501" comment="php53-devel is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019041" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547016" version="501" comment="php53-xml is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019038" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547018" version="501" comment="php53-process is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019047" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547020" version="501" comment="php53-pgsql is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019046" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547022" version="501" comment="php53-pspell is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019052" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547024" version="501" comment="php53-bcmath is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019048" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547026" version="501" comment="php53-gd is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019035" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547028" version="501" comment="php53-xmlrpc is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019039" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547030" version="501" comment="php53-intl is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019043" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547032" version="501" comment="php53-ldap is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019034" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547034" version="501" comment="php53-odbc is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019049" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547036" version="501" comment="php53-mbstring is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019037" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547038" version="501" comment="php53-mysql is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019045" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547040" version="501" comment="php53-common is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019044" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120547042" version="501" comment="php53-imap is earlier than 0:5.3.3-7.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120019033" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120547003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571005" version="501" comment="kernel is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571007" version="501" comment="kernel-headers is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571009" version="501" comment="kernel-bootwrapper is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571011" version="501" comment="kernel-debug is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571013" version="501" comment="kernel-devel is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571015" version="501" comment="perf is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571017" version="501" comment="python-perf is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571019" version="501" comment="kernel-debug-devel is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571021" version="501" comment="kernel-kdump is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571023" version="501" comment="kernel-kdump-devel is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571025" version="501" comment="kernel-doc is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120007013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120571027" version="501" comment="kernel-firmware is earlier than 0:2.6.32-220.17.1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120052015" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120571003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120676002" version="501" comment="kvm is earlier than 0:83-249.el5_8.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120676003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120676004" version="501" comment="kvm-qemu-img is earlier than 0:83-249.el5_8.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120676003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120676006" version="501" comment="kvm-tools is earlier than 0:83-249.el5_8.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120676003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120676008" version="501" comment="kmod-kvm-debug is earlier than 0:83-249.el5_8.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120676003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120676010" version="501" comment="kmod-kvm is earlier than 0:83-249.el5_8.4" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120051004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120676003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677002" version="501" comment="postgresql is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677003" version="501" comment="postgresql is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677004" version="501" comment="postgresql-python is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677005" version="501" comment="postgresql-python is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677006" version="501" comment="postgresql-tcl is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677007" version="501" comment="postgresql-tcl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677008" version="501" comment="postgresql-server is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677009" version="501" comment="postgresql-server is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677010" version="501" comment="postgresql-contrib is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677011" version="501" comment="postgresql-contrib is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677012" version="501" comment="postgresql-test is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677013" version="501" comment="postgresql-test is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677014" version="501" comment="postgresql-devel is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677015" version="501" comment="postgresql-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677016" version="501" comment="postgresql-pl is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677017" version="501" comment="postgresql-pl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677018" version="501" comment="postgresql-libs is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677019" version="501" comment="postgresql-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677020" version="501" comment="postgresql-docs is earlier than 0:8.1.23-4.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120677003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120677021" version="501" comment="postgresql-docs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678002" version="501" comment="postgresql84 is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678003" version="501" comment="postgresql84 is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678004" version="501" comment="postgresql84-test is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678005" version="501" comment="postgresql84-test is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678003" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678006" version="501" comment="postgresql84-plpython is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678007" version="501" comment="postgresql84-plpython is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678004" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678008" version="501" comment="postgresql84-devel is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678009" version="501" comment="postgresql84-devel is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678010" version="501" comment="postgresql84-server is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678011" version="501" comment="postgresql84-server is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678012" version="501" comment="postgresql84-python is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678013" version="501" comment="postgresql84-python is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678014" version="501" comment="postgresql84-contrib is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678015" version="501" comment="postgresql84-contrib is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678016" version="501" comment="postgresql84-docs is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678017" version="501" comment="postgresql84-docs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678009" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678018" version="501" comment="postgresql84-libs is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678019" version="501" comment="postgresql84-libs is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678020" version="501" comment="postgresql84-tcl is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678021" version="501" comment="postgresql84-tcl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678022" version="501" comment="postgresql84-plperl is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678023" version="501" comment="postgresql84-plperl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678012" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678024" version="501" comment="postgresql84-pltcl is earlier than 0:8.4.11-1.el5_8" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678004" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678025" version="501" comment="postgresql84-pltcl is signed with Red Hat redhatrelease key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678013" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120006002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678030" version="501" comment="postgresql is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678031" version="501" comment="postgresql is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677002" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678032" version="501" comment="postgresql-plperl is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678033" version="501" comment="postgresql-plperl is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678019" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678034" version="501" comment="postgresql-contrib is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678035" version="501" comment="postgresql-contrib is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677006" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678036" version="501" comment="postgresql-devel is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678037" version="501" comment="postgresql-devel is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677008" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678038" version="501" comment="postgresql-docs is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678039" version="501" comment="postgresql-docs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677011" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678040" version="501" comment="postgresql-libs is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678041" version="501" comment="postgresql-libs is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677010" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678042" version="501" comment="postgresql-plpython is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678043" version="501" comment="postgresql-plpython is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678024" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678044" version="501" comment="postgresql-server is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678045" version="501" comment="postgresql-server is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678046" version="501" comment="postgresql-test is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678047" version="501" comment="postgresql-test is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120677007" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678048" version="501" comment="postgresql-pltcl is earlier than 0:8.4.11-1.el6_2" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120678006" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120678049" version="501" comment="postgresql-pltcl is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120678027" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120683005" version="501" comment="bind-dyndb-ldap is earlier than 0:0.2.0-7.el6_2.1" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120683005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120683003" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120683006" version="501" comment="bind-dyndb-ldap is signed with Red Hat redhatrelease2 key" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120683005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120011002" />
</rpminfo_test>
<rpminfo_test xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:tst:20120688005" version="501" comment="flash-plugin is earlier than 0:10.3.183.19-1.el6" check="at least one">
  <object object_ref="oval:com.redhat.rhsa:obj:20120144005" />
  <state state_ref="oval:com.redhat.rhsa:ste:20120688004" />
</rpminfo_test>
</tests>

<objects>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120006001" version="502">
  <name>redhat-release</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120006002" version="502">
  <name>java-1.4.2-ibm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120006003" version="502">
  <name>java-1.4.2-ibm-javacomm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120006004" version="502">
  <name>java-1.4.2-ibm-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120006005" version="502">
  <name>java-1.4.2-ibm-demo</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120006006" version="502">
  <name>java-1.4.2-ibm-jdbc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120006007" version="502">
  <name>java-1.4.2-ibm-src</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120006008" version="502">
  <name>java-1.4.2-ibm-plugin</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007002" version="502">
  <name>kernel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007003" version="502">
  <name>kernel-headers</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007004" version="502">
  <name>kernel-debug</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007005" version="502">
  <name>kernel-debug-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007006" version="502">
  <name>kernel-xen-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007007" version="502">
  <name>kernel-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007008" version="502">
  <name>kernel-xen</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007009" version="502">
  <name>kernel-kdump-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007010" version="502">
  <name>kernel-kdump</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007011" version="502">
  <name>kernel-PAE</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007012" version="502">
  <name>kernel-PAE-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120007013" version="502">
  <name>kernel-doc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120011002" version="502">
  <name>acroread</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120011003" version="502">
  <name>acroread-plugin</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120011004" version="502">
  <name>redhat-release-server</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120011005" version="502">
  <name>redhat-release-client</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120011006" version="502">
  <name>redhat-release-workstation</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120011007" version="502">
  <name>redhat-release-computenode</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120016002" version="502">
  <name>libxml2</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120016003" version="502">
  <name>libxml2-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120016004" version="502">
  <name>libxml2-python</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120018008" version="502">
  <name>libxml2-static</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019005" version="502">
  <name>php</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019006" version="502">
  <name>php-recode</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019007" version="502">
  <name>php-imap</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019008" version="502">
  <name>php-common</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019009" version="502">
  <name>php-xml</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019010" version="502">
  <name>php-enchant</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019011" version="502">
  <name>php-mysql</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019012" version="502">
  <name>php-pspell</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019013" version="502">
  <name>php-xmlrpc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019014" version="502">
  <name>php-dba</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019015" version="502">
  <name>php-embedded</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019016" version="502">
  <name>php-intl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019017" version="502">
  <name>php-odbc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019018" version="502">
  <name>php-snmp</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019019" version="502">
  <name>php-soap</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019020" version="502">
  <name>php-pdo</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019021" version="502">
  <name>php-ldap</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019022" version="502">
  <name>php-bcmath</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019023" version="502">
  <name>php-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019024" version="502">
  <name>php-gd</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019025" version="502">
  <name>php-process</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019026" version="502">
  <name>php-pgsql</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019027" version="502">
  <name>php-cli</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019028" version="502">
  <name>php-mbstring</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019029" version="502">
  <name>php-zts</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019030" version="502">
  <name>php-tidy</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019032" version="502">
  <name>php53</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019033" version="502">
  <name>php53-imap</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019034" version="502">
  <name>php53-ldap</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019035" version="502">
  <name>php53-gd</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019036" version="502">
  <name>php53-dba</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019037" version="502">
  <name>php53-mbstring</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019038" version="502">
  <name>php53-xml</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019039" version="502">
  <name>php53-xmlrpc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019040" version="502">
  <name>php53-soap</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019041" version="502">
  <name>php53-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019042" version="502">
  <name>php53-pdo</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019043" version="502">
  <name>php53-intl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019044" version="502">
  <name>php53-common</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019045" version="502">
  <name>php53-mysql</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019046" version="502">
  <name>php53-pgsql</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019047" version="502">
  <name>php53-process</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019048" version="502">
  <name>php53-bcmath</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019049" version="502">
  <name>php53-odbc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019050" version="502">
  <name>php53-snmp</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019051" version="502">
  <name>php53-cli</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120019052" version="502">
  <name>php53-pspell</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120033008" version="502">
  <name>php-ncurses</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120034002" version="502">
  <name>java-1.6.0-ibm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120034003" version="502">
  <name>java-1.6.0-ibm-accessibility</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120034004" version="502">
  <name>java-1.6.0-ibm-src</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120034005" version="502">
  <name>java-1.6.0-ibm-plugin</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120034006" version="502">
  <name>java-1.6.0-ibm-javacomm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120034007" version="502">
  <name>java-1.6.0-ibm-jdbc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120034008" version="502">
  <name>java-1.6.0-ibm-demo</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120034009" version="502">
  <name>java-1.6.0-ibm-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120050005" version="502">
  <name>qemu-kvm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120050006" version="502">
  <name>qemu-img</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120050007" version="502">
  <name>qemu-kvm-tools</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120051002" version="502">
  <name>kvm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120051003" version="502">
  <name>kvm-qemu-img</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120051004" version="502">
  <name>kmod-kvm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120051005" version="502">
  <name>kmod-kvm-debug</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120051006" version="502">
  <name>kvm-tools</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120052006" version="502">
  <name>kernel-bootwrapper</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120052008" version="502">
  <name>perf</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120052009" version="502">
  <name>python-perf</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120052015" version="502">
  <name>kernel-firmware</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120058005" version="502">
  <name>glibc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120058006" version="502">
  <name>nscd</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120058007" version="502">
  <name>glibc-utils</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120058008" version="502">
  <name>glibc-headers</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120058009" version="502">
  <name>glibc-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120058010" version="502">
  <name>glibc-static</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120058011" version="502">
  <name>glibc-common</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120059005" version="502">
  <name>openssl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120059006" version="502">
  <name>openssl-perl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120059007" version="502">
  <name>openssl-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120059008" version="502">
  <name>openssl-static</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120062005" version="502">
  <name>t1lib</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120062006" version="502">
  <name>t1lib-static</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120062007" version="502">
  <name>t1lib-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120062008" version="502">
  <name>t1lib-apps</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069005" version="502">
  <name>ruby</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069006" version="502">
  <name>ruby-docs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069007" version="502">
  <name>ruby-rdoc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069008" version="502">
  <name>ruby-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069009" version="502">
  <name>ruby-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069010" version="502">
  <name>ruby-tcltk</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069011" version="502">
  <name>ruby-static</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069012" version="502">
  <name>ruby-ri</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120069013" version="502">
  <name>ruby-irb</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120070007" version="502">
  <name>irb</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120070008" version="502">
  <name>ruby-mode</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120071008" version="502">
  <name>php-domxml</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120071015" version="502">
  <name>php-pear</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120079005" version="502">
  <name>xulrunner</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120079006" version="502">
  <name>xulrunner-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120079007" version="502">
  <name>firefox</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120080005" version="502">
  <name>thunderbird</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120084002" version="502">
  <name>seamonkey</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120084003" version="502">
  <name>seamonkey-mail</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120084004" version="502">
  <name>seamonkey-chat</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120084005" version="502">
  <name>seamonkey-js-debugger</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120084006" version="502">
  <name>seamonkey-dom-inspector</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120084007" version="502">
  <name>seamonkey-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120095005" version="502">
  <name>ghostscript</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120095006" version="502">
  <name>ghostscript-gtk</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120095007" version="502">
  <name>ghostscript-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120095008" version="502">
  <name>ghostscript-doc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120103002" version="502">
  <name>squirrelmail</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120105005" version="502">
  <name>mysql</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120105006" version="502">
  <name>mysql-embedded-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120105007" version="502">
  <name>mysql-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120105008" version="502">
  <name>mysql-embedded</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120105009" version="502">
  <name>mysql-bench</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120105010" version="502">
  <name>mysql-server</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120105011" version="502">
  <name>mysql-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120105012" version="502">
  <name>mysql-test</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120125006" version="502">
  <name>nptl-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120125007" version="502">
  <name>glibc-profile</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120128005" version="502">
  <name>httpd</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120128006" version="502">
  <name>httpd-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120128007" version="502">
  <name>httpd-tools</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120128008" version="502">
  <name>mod_ssl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120128009" version="502">
  <name>httpd-manual</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120135005" version="502">
  <name>java-1.6.0-openjdk</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120135006" version="502">
  <name>java-1.6.0-openjdk-demo</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120135007" version="502">
  <name>java-1.6.0-openjdk-javadoc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120135008" version="502">
  <name>java-1.6.0-openjdk-src</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120135009" version="502">
  <name>java-1.6.0-openjdk-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120136005" version="502">
  <name>libvorbis</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120136006" version="502">
  <name>libvorbis-devel-docs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120136007" version="502">
  <name>libvorbis-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137005" version="502">
  <name>texlive</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137006" version="502">
  <name>texlive-latex</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137007" version="502">
  <name>texlive-dvips</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137008" version="502">
  <name>kpathsea-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137009" version="502">
  <name>texlive-xetex</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137010" version="502">
  <name>texlive-utils</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137011" version="502">
  <name>kpathsea</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137012" version="502">
  <name>mendexk</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137013" version="502">
  <name>texlive-east-asian</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137014" version="502">
  <name>texlive-afm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137015" version="502">
  <name>texlive-context</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120137016" version="502">
  <name>texlive-dviutils</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120139005" version="502">
  <name>java-1.6.0-sun</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120139006" version="502">
  <name>java-1.6.0-sun-src</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120139007" version="502">
  <name>java-1.6.0-sun-plugin</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120139008" version="502">
  <name>java-1.6.0-sun-jdbc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120139009" version="502">
  <name>java-1.6.0-sun-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120139010" version="502">
  <name>java-1.6.0-sun-demo</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120144005" version="503">
  <name>flash-plugin</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120152002" version="504">
  <name>kexec-tools</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120153002" version="504">
  <name>sos</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120301002" version="504">
  <name>ImageMagick</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120301003" version="504">
  <name>ImageMagick-perl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120301004" version="504">
  <name>ImageMagick-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120301005" version="504">
  <name>ImageMagick-c++</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120301006" version="504">
  <name>ImageMagick-c++-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120302002" version="504">
  <name>cups</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120302003" version="504">
  <name>cups-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120302004" version="504">
  <name>cups-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120302005" version="504">
  <name>cups-lpd</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120306002" version="504">
  <name>krb5</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120306003" version="504">
  <name>krb5-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120306004" version="504">
  <name>krb5-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120306005" version="504">
  <name>krb5-workstation</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120306006" version="504">
  <name>krb5-server</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120306007" version="504">
  <name>krb5-server-ldap</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120307002" version="504">
  <name>util-linux</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120308002" version="504">
  <name>busybox</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120308003" version="504">
  <name>busybox-anaconda</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120309002" version="504">
  <name>sudo</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120310002" version="504">
  <name>nfs-utils</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120311002" version="504">
  <name>ibutils</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120311003" version="504">
  <name>ibutils-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120311004" version="504">
  <name>ibutils-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120312002" version="504">
  <name>initscripts</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120313002" version="504">
  <name>samba</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120313003" version="504">
  <name>samba-swat</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120313004" version="504">
  <name>libsmbclient-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120313005" version="504">
  <name>samba-client</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120313006" version="504">
  <name>samba-common</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120313007" version="504">
  <name>libsmbclient</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120317005" version="502">
  <name>libpng</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120317006" version="502">
  <name>libpng-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120317007" version="502">
  <name>libpng-static</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120317009" version="502">
  <name>libpng10</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120317010" version="502">
  <name>libpng10-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120321002" version="502">
  <name>cvs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120321003" version="502">
  <name>cvs-inetd</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120369005" version="502">
  <name>python-sqlalchemy</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120370002" version="502">
  <name>xen</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120370003" version="502">
  <name>xen-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120370004" version="502">
  <name>xen-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120376002" version="502">
  <name>systemtap</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120376003" version="502">
  <name>systemtap-testsuite</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120376004" version="502">
  <name>systemtap-runtime</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120376005" version="502">
  <name>systemtap-initscript</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120376006" version="502">
  <name>systemtap-server</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120376007" version="502">
  <name>systemtap-sdt-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120376012" version="502">
  <name>systemtap-grapher</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120410005" version="502">
  <name>raptor</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120410006" version="502">
  <name>raptor-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411002" version="502">
  <name>openoffice.org</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411003" version="502">
  <name>openoffice.org-langpack-ur</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411004" version="502">
  <name>openoffice.org-core</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411005" version="502">
  <name>openoffice.org-langpack-es</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411006" version="502">
  <name>openoffice.org-langpack-gu_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411007" version="502">
  <name>openoffice.org-langpack-sl_SI</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411008" version="502">
  <name>openoffice.org-writer</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411009" version="502">
  <name>openoffice.org-langpack-nr_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411010" version="502">
  <name>openoffice.org-langpack-zu_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411011" version="502">
  <name>openoffice.org-langpack-lt_LT</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411012" version="502">
  <name>openoffice.org-langpack-pl_PL</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411013" version="502">
  <name>openoffice.org-langpack-bn</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411014" version="502">
  <name>openoffice.org-sdk</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411015" version="502">
  <name>openoffice.org-impress</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411016" version="502">
  <name>openoffice.org-langpack-ms_MY</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411017" version="502">
  <name>openoffice.org-base</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411018" version="502">
  <name>openoffice.org-xsltfilter</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411019" version="502">
  <name>openoffice.org-langpack-ve_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411020" version="502">
  <name>openoffice.org-ure</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411021" version="502">
  <name>openoffice.org-langpack-ja_JP</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411022" version="502">
  <name>openoffice.org-langpack-eu_ES</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411023" version="502">
  <name>openoffice.org-langpack-gl_ES</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411024" version="502">
  <name>openoffice.org-langpack-pt_PT</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411025" version="502">
  <name>openoffice.org-headless</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411026" version="502">
  <name>openoffice.org-langpack-ta_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411027" version="502">
  <name>openoffice.org-langpack-de</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411028" version="502">
  <name>openoffice.org-langpack-zh_TW</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411029" version="502">
  <name>openoffice.org-langpack-ca_ES</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411030" version="502">
  <name>openoffice.org-pyuno</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411031" version="502">
  <name>openoffice.org-math</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411032" version="502">
  <name>openoffice.org-langpack-da_DK</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411033" version="502">
  <name>openoffice.org-langpack-ts_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411034" version="502">
  <name>openoffice.org-langpack-ga_IE</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411035" version="502">
  <name>openoffice.org-langpack-sk_SK</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411036" version="502">
  <name>openoffice.org-calc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411037" version="502">
  <name>openoffice.org-langpack-he_IL</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411038" version="502">
  <name>openoffice.org-langpack-te_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411039" version="502">
  <name>openoffice.org-langpack-bg_BG</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411040" version="502">
  <name>openoffice.org-langpack-af_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411041" version="502">
  <name>openoffice.org-langpack-cs_CZ</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411042" version="502">
  <name>openoffice.org-draw</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411043" version="502">
  <name>openoffice.org-langpack-kn_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411044" version="502">
  <name>openoffice.org-sdk-doc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411045" version="502">
  <name>openoffice.org-langpack-hu_HU</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411046" version="502">
  <name>openoffice.org-langpack-sr_CS</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411047" version="502">
  <name>openoffice.org-javafilter</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411048" version="502">
  <name>openoffice.org-langpack-nso_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411049" version="502">
  <name>openoffice.org-langpack-st_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411050" version="502">
  <name>openoffice.org-langpack-it</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411051" version="502">
  <name>openoffice.org-langpack-mr_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411052" version="502">
  <name>openoffice.org-langpack-pa_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411053" version="502">
  <name>openoffice.org-langpack-et_EE</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411054" version="502">
  <name>openoffice.org-langpack-hi_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411055" version="502">
  <name>openoffice.org-langpack-or_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411056" version="502">
  <name>openoffice.org-testtools</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411057" version="502">
  <name>openoffice.org-langpack-tr_TR</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411058" version="502">
  <name>openoffice.org-langpack-ml_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411059" version="502">
  <name>openoffice.org-langpack-el_GR</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411060" version="502">
  <name>openoffice.org-langpack-ar</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411061" version="502">
  <name>openoffice.org-langpack-nl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411062" version="502">
  <name>openoffice.org-langpack-sv</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411063" version="502">
  <name>openoffice.org-langpack-nb_NO</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411064" version="502">
  <name>openoffice.org-langpack-as_IN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411065" version="502">
  <name>openoffice.org-langpack-fr</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411066" version="502">
  <name>openoffice.org-langpack-ko_KR</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411067" version="502">
  <name>openoffice.org-langpack-zh_CN</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411068" version="502">
  <name>openoffice.org-langpack-fi_FI</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411069" version="502">
  <name>openoffice.org-langpack-cy_GB</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411070" version="502">
  <name>openoffice.org-langpack-hr_HR</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411071" version="502">
  <name>openoffice.org-langpack-tn_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411072" version="502">
  <name>openoffice.org-graphicfilter</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411073" version="502">
  <name>openoffice.org-langpack-pt_BR</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411074" version="502">
  <name>openoffice.org-emailmerge</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411075" version="502">
  <name>openoffice.org-langpack-th_TH</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411076" version="502">
  <name>openoffice.org-langpack-xh_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411077" version="502">
  <name>openoffice.org-langpack-ss_ZA</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411078" version="502">
  <name>openoffice.org-langpack-nn_NO</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120411079" version="502">
  <name>openoffice.org-langpack-ru</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120427005" version="503">
  <name>libtasn1</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120427006" version="503">
  <name>libtasn1-tools</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120427007" version="503">
  <name>libtasn1-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120428002" version="503">
  <name>gnutls</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120428003" version="503">
  <name>gnutls-utils</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120428004" version="503">
  <name>gnutls-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120429008" version="503">
  <name>gnutls-guile</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120451002" version="504">
  <name>rpm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120451003" version="504">
  <name>rpm-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120451004" version="504">
  <name>rpm-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120451005" version="504">
  <name>rpm-python</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120451006" version="504">
  <name>rpm-apidocs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120451007" version="504">
  <name>rpm-build</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120451008" version="504">
  <name>popt</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120451013" version="504">
  <name>rpm-cron</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120465012" version="503">
  <name>samba-winbind-krb5-locator</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120465013" version="503">
  <name>samba-winbind-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120465014" version="503">
  <name>samba-domainjoin-gui</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120465015" version="503">
  <name>samba-winbind-clients</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120465016" version="503">
  <name>samba-doc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120465017" version="503">
  <name>samba-winbind</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120466002" version="503">
  <name>samba3x</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120466003" version="503">
  <name>samba3x-doc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120466004" version="503">
  <name>samba3x-domainjoin-gui</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120466005" version="503">
  <name>samba3x-winbind-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120466006" version="503">
  <name>samba3x-client</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120466007" version="503">
  <name>samba3x-common</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120466008" version="503">
  <name>samba3x-swat</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120466009" version="503">
  <name>samba3x-winbind</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120467002" version="503">
  <name>freetype</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120467003" version="503">
  <name>freetype-demos</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120467004" version="503">
  <name>freetype-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120468002" version="503">
  <name>libtiff</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120468003" version="503">
  <name>libtiff-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120468008" version="503">
  <name>libtiff-static</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474002" version="504">
  <name>tomcat5</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474003" version="504">
  <name>tomcat5-servlet-2.4-api-javadoc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474004" version="504">
  <name>tomcat5-admin-webapps</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474005" version="504">
  <name>tomcat5-jsp-2.0-api</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474006" version="504">
  <name>tomcat5-jasper</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474007" version="504">
  <name>tomcat5-server-lib</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474008" version="504">
  <name>tomcat5-jasper-javadoc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474009" version="504">
  <name>tomcat5-jsp-2.0-api-javadoc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474010" version="504">
  <name>tomcat5-servlet-2.4-api</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474011" version="504">
  <name>tomcat5-webapps</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120474012" version="504">
  <name>tomcat5-common-lib</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475005" version="504">
  <name>tomcat6</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475006" version="504">
  <name>tomcat6-servlet-2.5-api</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475007" version="504">
  <name>tomcat6-docs-webapp</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475008" version="504">
  <name>tomcat6-el-2.1-api</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475009" version="504">
  <name>tomcat6-admin-webapps</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475010" version="504">
  <name>tomcat6-jsp-2.1-api</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475011" version="504">
  <name>tomcat6-lib</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475012" version="504">
  <name>tomcat6-javadoc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120475013" version="504">
  <name>tomcat6-webapps</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120508005" version="503">
  <name>java-1.5.0-ibm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120508006" version="503">
  <name>java-1.5.0-ibm-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120508007" version="503">
  <name>java-1.5.0-ibm-src</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120508008" version="503">
  <name>java-1.5.0-ibm-demo</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120508009" version="503">
  <name>java-1.5.0-ibm-jdbc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120508010" version="503">
  <name>java-1.5.0-ibm-javacomm</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120508011" version="503">
  <name>java-1.5.0-ibm-plugin</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120509005" version="503">
  <name>wireshark</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120509006" version="503">
  <name>wireshark-gnome</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120509007" version="503">
  <name>wireshark-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120518005" version="503">
  <name>openssl097a</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120518011" version="503">
  <name>openssl098e</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120544008" version="501">
  <name>ImageMagick-doc</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677002" version="501">
  <name>postgresql</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677003" version="501">
  <name>postgresql-python</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677004" version="501">
  <name>postgresql-tcl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677005" version="501">
  <name>postgresql-server</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677006" version="501">
  <name>postgresql-contrib</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677007" version="501">
  <name>postgresql-test</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677008" version="501">
  <name>postgresql-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677009" version="501">
  <name>postgresql-pl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677010" version="501">
  <name>postgresql-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120677011" version="501">
  <name>postgresql-docs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678002" version="501">
  <name>postgresql84</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678003" version="501">
  <name>postgresql84-test</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678004" version="501">
  <name>postgresql84-plpython</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678005" version="501">
  <name>postgresql84-devel</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678006" version="501">
  <name>postgresql84-server</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678007" version="501">
  <name>postgresql84-python</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678008" version="501">
  <name>postgresql84-contrib</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678009" version="501">
  <name>postgresql84-docs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678010" version="501">
  <name>postgresql84-libs</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678011" version="501">
  <name>postgresql84-tcl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678012" version="501">
  <name>postgresql84-plperl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678013" version="501">
  <name>postgresql84-pltcl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678019" version="501">
  <name>postgresql-plperl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678024" version="501">
  <name>postgresql-plpython</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120678027" version="501">
  <name>postgresql-pltcl</name>
</rpminfo_object>
<rpminfo_object xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:obj:20120683005" version="501">
  <name>bind-dyndb-ldap</name>
</rpminfo_object>
</objects>

<states>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120006001" version="502">
  <signature_keyid operation="equals">219180cddb42a60e</signature_keyid>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120006002" version="502">
  <signature_keyid operation="equals">5326810137017186</signature_keyid>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120006003" version="502">
  <version operation="pattern match">^5[^[:digit:]]</version>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120006004" version="502">
  <evr datatype="evr_string" operation="less than">0:1.4.2.13.11-1jpp.1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120007003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.6.18-274.17.1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120011002" version="502">
  <signature_keyid operation="equals">199e2f91fd431d51</signature_keyid>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120011005" version="502">
  <evr datatype="evr_string" operation="less than">0:9.4.7-1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120011006" version="502">
  <version operation="pattern match">^6[^[:digit:]]</version>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120011007" version="502">
  <evr datatype="evr_string" operation="less than">0:9.4.7-1.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120016002" version="502">
  <version operation="pattern match">^4[^[:digit:]]</version>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120016003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.6.16-12.9</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120017003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.6.26-2.1.12.el5_7.2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120018003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.7.6-4.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120019004" version="502">
  <evr datatype="evr_string" operation="less than">0:5.3.3-3.el6_2.5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120019006" version="502">
  <evr datatype="evr_string" operation="less than">0:5.3.3-1.el5_7.5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120033003" version="502">
  <evr datatype="evr_string" operation="less than">0:5.1.6-27.el5_7.4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120034005" version="502">
  <evr datatype="evr_string" operation="less than">1:1.6.0.10.0-1jpp.2.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120034007" version="502">
  <evr datatype="evr_string" operation="less than">1:1.6.0.10.0-1jpp.2.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120050003" version="502">
  <evr datatype="evr_string" operation="less than">2:0.12.1.2-2.209.el6_2.4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120051003" version="502">
  <evr datatype="evr_string" operation="less than">0:83-239.el5_7.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120052003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.6.32-220.4.1.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120058003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.12-1.47.el6_2.5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120059003" version="502">
  <evr datatype="evr_string" operation="less than">0:1.0.0-20.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120060003" version="502">
  <evr datatype="evr_string" operation="less than">0:0.9.8e-20.el5_7.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120062003" version="502">
  <evr datatype="evr_string" operation="less than">0:5.1.2-6.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120069003" version="502">
  <evr datatype="evr_string" operation="less than">0:1.8.7.352-4.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120070004" version="502">
  <evr datatype="evr_string" operation="less than">0:1.8.1-18.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120070006" version="502">
  <evr datatype="evr_string" operation="less than">0:1.8.5-22.el5_7.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120071003" version="502">
  <evr datatype="evr_string" operation="less than">0:4.3.9-3.35</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120073003" version="502">
  <evr datatype="evr_string" operation="less than">0:4AS-10.7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120073004" version="502">
  <evr datatype="evr_string" operation="less than">0:4ES-10.7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120073005" version="502">
  <evr datatype="evr_string" operation="less than">0:4WS-10.7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120073006" version="502">
  <evr datatype="evr_string" operation="less than">0:4Desktop-10.7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120079005" version="502">
  <evr datatype="evr_string" operation="less than">0:1.9.2.26-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120079006" version="502">
  <evr datatype="evr_string" operation="less than">0:3.6.26-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120079008" version="502">
  <evr datatype="evr_string" operation="less than">0:3.6.26-2.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120079010" version="502">
  <evr datatype="evr_string" operation="less than">0:1.9.2.26-1.el5_7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120079011" version="502">
  <evr datatype="evr_string" operation="less than">0:3.6.26-1.el5_7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120080003" version="502">
  <evr datatype="evr_string" operation="less than">0:3.1.18-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120084003" version="502">
  <evr datatype="evr_string" operation="less than">0:1.0.9-78.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120085004" version="502">
  <evr datatype="evr_string" operation="less than">0:1.5.0.12-46.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120085006" version="502">
  <evr datatype="evr_string" operation="less than">0:2.0.0.24-28.el5_7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120086003" version="502">
  <evr datatype="evr_string" operation="less than">0:0.9.7a-43.18.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120092003" version="502">
  <evr datatype="evr_string" operation="less than">0:5.3.3-1.el5_7.6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120093005" version="502">
  <evr datatype="evr_string" operation="less than">0:5.3.3-3.el6_2.6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120093007" version="502">
  <evr datatype="evr_string" operation="less than">0:4.3.9-3.36</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120093009" version="502">
  <evr datatype="evr_string" operation="less than">0:5.1.6-27.el5_7.5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120095004" version="502">
  <evr datatype="evr_string" operation="less than">0:8.70-11.el6_2.6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120095006" version="502">
  <evr datatype="evr_string" operation="less than">0:8.70-6.el5_7.6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120096003" version="502">
  <evr datatype="evr_string" operation="less than">0:7.07-33.13.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120103004" version="502">
  <evr datatype="evr_string" operation="less than">0:1.4.8-18.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120103006" version="502">
  <evr datatype="evr_string" operation="less than">0:1.4.8-5.el5_7.13</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120105003" version="502">
  <evr datatype="evr_string" operation="less than">0:5.1.61-1.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120107003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.6.18-274.18.1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120125003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.3.4-2.57</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120126003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.5-65.el5_7.3</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120127003" version="502">
  <evr datatype="evr_string" operation="less than">0:5.0.95-1.el5_7.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120128003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.2.15-15.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120135003" version="502">
  <evr datatype="evr_string" operation="less than">1:1.6.0.0-1.43.1.10.6.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120136005" version="502">
  <evr datatype="evr_string" operation="less than">1:1.2.3-4.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120136007" version="502">
  <evr datatype="evr_string" operation="less than">1:1.1.0-4.el4.5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120136009" version="502">
  <evr datatype="evr_string" operation="less than">1:1.1.2-3.el5_7.6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120137003" version="502">
  <evr datatype="evr_string" operation="less than">0:2007-57.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120137004" version="502">
  <evr datatype="evr_string" operation="less than">0:2.6e-57.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120139005" version="502">
  <evr datatype="evr_string" operation="less than">1:1.6.0.31-1jpp.1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120140003" version="502">
  <evr datatype="evr_string" operation="less than">0:3.1.18-2.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120141003" version="502">
  <evr datatype="evr_string" operation="less than">0:1.0.9-79.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120142003" version="502">
  <evr datatype="evr_string" operation="less than">0:3.6.26-3.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120143004" version="502">
  <evr datatype="evr_string" operation="less than">0:1.9.2.26-2.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120143006" version="502">
  <evr datatype="evr_string" operation="less than">0:1.9.2.26-2.el5_7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120144004" version="503">
  <evr datatype="evr_string" operation="less than">0:10.3.183.15-1.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120150003" version="504">
  <evr datatype="evr_string" operation="less than">0:2.6.18-308.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120152003" version="504">
  <evr datatype="evr_string" operation="less than">0:1.102pre-154.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120153003" version="504">
  <evr datatype="evr_string" operation="less than">0:1.7-9.62.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120301003" version="504">
  <evr datatype="evr_string" operation="less than">0:6.2.8.0-12.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120302003" version="504">
  <evr datatype="evr_string" operation="less than">1:1.3.7-30.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120306003" version="504">
  <evr datatype="evr_string" operation="less than">0:1.6.1-70.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120307003" version="504">
  <evr datatype="evr_string" operation="less than">0:2.13-0.59.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120308003" version="504">
  <evr datatype="evr_string" operation="less than">1:1.2.0-13.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120309003" version="504">
  <evr datatype="evr_string" operation="less than">0:1.7.2p1-13.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120310003" version="504">
  <evr datatype="evr_string" operation="less than">1:1.0.9-60.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120311003" version="504">
  <evr datatype="evr_string" operation="less than">0:1.2-11.2.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120312003" version="504">
  <evr datatype="evr_string" operation="less than">0:8.45.42-1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120313003" version="504">
  <evr datatype="evr_string" operation="less than">0:3.0.33-3.37.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120317005" version="502">
  <evr datatype="evr_string" operation="less than">2:1.2.46-2.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120317007" version="502">
  <evr datatype="evr_string" operation="less than">2:1.2.7-9.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120317008" version="502">
  <evr datatype="evr_string" operation="less than">0:1.0.16-10.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120317010" version="502">
  <evr datatype="evr_string" operation="less than">2:1.2.10-15.el5_7</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120321004" version="502">
  <evr datatype="evr_string" operation="less than">0:1.11.22-11.el5_8.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120321006" version="502">
  <evr datatype="evr_string" operation="less than">0:1.11.23-11.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120322003" version="502">
  <evr datatype="evr_string" operation="less than">1:1.6.0.0-1.25.1.10.6.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120323003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.2.3-63.el5_8.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120324004" version="502">
  <evr datatype="evr_string" operation="less than">0:2.6.26-2.1.15.el5_8.2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120324006" version="502">
  <evr datatype="evr_string" operation="less than">0:2.7.6-4.el6_2.4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120332004" version="502">
  <evr datatype="evr_string" operation="less than">0:3.0.33-3.38.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120332006" version="502">
  <evr datatype="evr_string" operation="less than">0:3.0.33-0.35.el4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120349003" version="503">
  <evr datatype="evr_string" operation="less than">0:4Desktop-10.10</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120349004" version="503">
  <evr datatype="evr_string" operation="less than">0:4WS-10.10</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120349005" version="503">
  <evr datatype="evr_string" operation="less than">0:4ES-10.10</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120349006" version="503">
  <evr datatype="evr_string" operation="less than">0:4AS-10.10</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120350003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.6.32-220.7.1.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120359004" version="502">
  <evr datatype="evr_string" operation="less than">0:10.3.183.16-1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120359006" version="502">
  <evr datatype="evr_string" operation="less than">0:10.3.183.16-1.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120369003" version="502">
  <evr datatype="evr_string" operation="less than">0:0.5.5-3.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120370003" version="502">
  <evr datatype="evr_string" operation="less than">0:3.0.3-135.el5_8.2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120376004" version="502">
  <evr datatype="evr_string" operation="less than">0:1.6-7.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120376006" version="502">
  <evr datatype="evr_string" operation="less than">0:1.6-5.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120387004" version="502">
  <evr datatype="evr_string" operation="less than">0:10.0.3-1.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120387007" version="502">
  <evr datatype="evr_string" operation="less than">0:10.0.3-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120393003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.12-1.47.el6_2.9</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120397003" version="502">
  <evr datatype="evr_string" operation="less than">0:2.5-81.el5_8.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120407004" version="502">
  <evr datatype="evr_string" operation="less than">2:1.2.10-16.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120407006" version="502">
  <evr datatype="evr_string" operation="less than">2:1.2.48-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120410003" version="502">
  <evr datatype="evr_string" operation="less than">0:1.4.18-5.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120411003" version="502">
  <evr datatype="evr_string" operation="less than">1:3.1.1-19.10.el5_8.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120426004" version="503">
  <evr datatype="evr_string" operation="less than">0:0.9.8e-22.el5_8.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120426006" version="503">
  <evr datatype="evr_string" operation="less than">0:1.0.0-20.el6_2.3</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120427003" version="503">
  <evr datatype="evr_string" operation="less than">0:2.3-3.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120428003" version="503">
  <evr datatype="evr_string" operation="less than">0:1.4.1-7.el5_8.2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120429003" version="503">
  <evr datatype="evr_string" operation="less than">0:2.8.5-4.el6_2.2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120434004" version="503">
  <evr datatype="evr_string" operation="less than">0:10.3.183.18-1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120434006" version="503">
  <evr datatype="evr_string" operation="less than">0:10.3.183.18-1.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120451005" version="504">
  <evr datatype="evr_string" operation="less than">0:4.4.2.3-28.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120451006" version="504">
  <evr datatype="evr_string" operation="less than">0:1.10.2.3-28.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120451008" version="504">
  <evr datatype="evr_string" operation="less than">0:4.8.0-19.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120465004" version="503">
  <evr datatype="evr_string" operation="less than">0:3.0.33-3.39.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120465006" version="503">
  <evr datatype="evr_string" operation="less than">0:3.5.10-115.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120466003" version="503">
  <evr datatype="evr_string" operation="less than">0:3.5.10-0.108.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120467004" version="503">
  <evr datatype="evr_string" operation="less than">0:2.2.1-31.el5_8.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120467006" version="503">
  <evr datatype="evr_string" operation="less than">0:2.3.11-6.el6_2.9</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120468004" version="503">
  <evr datatype="evr_string" operation="less than">0:3.8.2-14.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120468006" version="503">
  <evr datatype="evr_string" operation="less than">0:3.9.4-5.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120469004" version="503">
  <evr datatype="evr_string" operation="less than">0:9.5.1-1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120469006" version="503">
  <evr datatype="evr_string" operation="less than">0:9.5.1-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120474003" version="504">
  <evr datatype="evr_string" operation="less than">0:5.5.23-0jpp.31.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120475003" version="504">
  <evr datatype="evr_string" operation="less than">0:6.0.24-36.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120480003" version="503">
  <evr datatype="evr_string" operation="less than">0:2.6.18-308.4.1.el5</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120481003" version="503">
  <evr datatype="evr_string" operation="less than">0:2.6.32-220.13.1.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120508004" version="503">
  <evr datatype="evr_string" operation="less than">1:1.5.0.13.1-1jpp.2.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120509003" version="503">
  <evr datatype="evr_string" operation="less than">0:1.2.15-2.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120514004" version="503">
  <evr datatype="evr_string" operation="less than">1:1.6.0.10.1-1jpp.5.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120515004" version="503">
  <evr datatype="evr_string" operation="less than">0:10.0.4-1.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120515007" version="503">
  <evr datatype="evr_string" operation="less than">0:10.0.4-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120518004" version="503">
  <evr datatype="evr_string" operation="less than">0:0.9.8e-22.el5_8.3</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120518005" version="503">
  <evr datatype="evr_string" operation="less than">0:0.9.7a-11.el5_8.2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120518007" version="503">
  <evr datatype="evr_string" operation="less than">0:1.0.0-20.el6_2.4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120518008" version="503">
  <evr datatype="evr_string" operation="less than">0:0.9.8e-17.el6_2.2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120523004" version="501">
  <evr datatype="evr_string" operation="less than">2:1.2.10-17.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120523006" version="501">
  <evr datatype="evr_string" operation="less than">2:1.2.49-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120533004" version="501">
  <evr datatype="evr_string" operation="less than">0:3.5.10-0.109.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120533006" version="501">
  <evr datatype="evr_string" operation="less than">0:3.5.10-116.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120544003" version="501">
  <evr datatype="evr_string" operation="less than">0:6.5.4.7-6.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120545003" version="501">
  <evr datatype="evr_string" operation="less than">0:6.2.8.0-15.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120546004" version="501">
  <evr datatype="evr_string" operation="less than">0:5.1.6-34.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120546006" version="501">
  <evr datatype="evr_string" operation="less than">0:5.3.3-3.el6_2.8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120547003" version="501">
  <evr datatype="evr_string" operation="less than">0:5.3.3-7.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120571003" version="501">
  <evr datatype="evr_string" operation="less than">0:2.6.32-220.17.1.el6</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120676003" version="501">
  <evr datatype="evr_string" operation="less than">0:83-249.el5_8.4</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120677003" version="501">
  <evr datatype="evr_string" operation="less than">0:8.1.23-4.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120678004" version="501">
  <evr datatype="evr_string" operation="less than">0:8.4.11-1.el5_8</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120678006" version="501">
  <evr datatype="evr_string" operation="less than">0:8.4.11-1.el6_2</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120683003" version="501">
  <evr datatype="evr_string" operation="less than">0:0.2.0-7.el6_2.1</evr>
</rpminfo_state>
<rpminfo_state xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5#linux" id="oval:com.redhat.rhsa:ste:20120688004" version="501">
  <evr datatype="evr_string" operation="less than">0:10.3.183.19-1.el6</evr>
</rpminfo_state>
</states>

</oval_definitions>

