Fedora Legacy Testing Update: screen

Jesse Keating jkeating at j2solutions.net
Tue Jan 20 19:16:44 UTC 2004


---------------------------------------------------------------------
Fedora Legacy Test Update Notification
FEDORALEGACY-2004-1187
Bugzilla https://bugzilla.fedora.us/show_bug.cgi?id=1187
2004-01-20
---------------------------------------------------------------------

Name        : screen
Versions    : 7.2: 3.9.9-4, 7.3: 3.9.11-4, 8.0: 3.9.11-11                                       
Summary     : A screen manager that supports multiple logins on one 
terminal.
Description : 
The screen utility allows you to have multiple logins on just one
terminal. Screen is useful for users who telnet into a machine or are
connected via a dumb terminal, but want to use more than just one
login.
 
Install the screen package if you need a screen manager that can
support multiple logins on one terminal.

---------------------------------------------------------------------
Update Information:

Integer signedness error in ansi.c for GNU screen 4.0.1 and earlier, and 
3.9.15 and earlier, allows local users to execute arbitrary code via a 
large number of ";" (semicolon) characters in escape sequences, which 
leads to a buffer overflow.

---------------------------------------------------------------------
7.2 changelog:
* Fri Jan 02 2004 Jason Rohwedder <rohwedde at codegrinder.com> 
3.9.9-4.legacy
 
- Integer signedness error -> buffer overflow patch
- http://marc.theaimsgroup.com/?l=bugtraq&m=106995837813873&w=2
- CAN-2003-0972

7.3 changelog:
* Tue Jan 06 2004 Jason Rohwedder <rohwedde at codegrinder.com> 
3.9.11-4.legacy
 
- Integer signedness error -> buffer overflow patch
- http://marc.theaimsgroup.com/?l=bugtraq&m=106995837813873&w=2
- CAN-2003-0972

8.0 changelog:
* Wed Jan 07 2004 Christian Pearce <pearcec at commnav.com> 
3.9.11-12.legacy
 
- Spec updated and copied from Jason Rohwedder 
<rohwedde at codegrinder.com>
  RedHat 7.2 and 7.3 spec files
- Integer signedness error -> buffer overflow patch
- http://marc.theaimsgroup.com/?l=bugtraq&m=106995837813873&w=2
- CAN-2003-0972
- Added autoconf213 in BuildRequires

---------------------------------------------------------------------
This update can be downloaded from:
  http://download.fedoralegacy.org/redhat/
(sha1sums)

194fbeb6e1871aad733966eb03525ee3fa6b736e  
7.2/SRPMS/updates-testing/screen-3.9.9-4.legacy.src.rpm
38752ec03ec07ab125ab495910861d0317dfe095  
7.2/updates-testing/i386/screen-3.9.9-4.legacy.i386.rpm

e22108165eeb8a4f2d6f078600117d2a3b5dc88d  
7.3/SRPMS/updates-testing/screen-3.9.11-4.legacy.src.rpm
278a76f5b56d32bc983ab5dc388397c98dffe31c  
7.3/updates-testing/i386/screen-3.9.11-4.legacy.i386.rpm

578b3166a0f647ac2a798ad81bdea43c9fe55c7b  
8.0/SRPMS/updates-testing/screen-3.9.11-11.legacy.src.rpm
c1422da61421e74a5a66e5404f1fcd33134c07e8  
8.0/updates-testing/i386/screen-3.9.11-11.legacy.i386.rpm

---------------------------------------------------------------------

Please test and comment in bugzilla.

-- 
Jesse Keating RHCE MCSE (geek.j2solutions.net)
Fedora Legacy Team      (www.fedora.us/wiki/FedoraLegacy)
Mondo DevTeam           (www.mondorescue.org)
GPG Public Key          (geek.j2solutions.net/jkeating.j2solutions.pub)
 
Was I helpful?  Let others know:
 http://svcs.affero.net/rm.php?r=jkeating
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: signature
URL: <http://listman.redhat.com/archives/fedora-legacy-list/attachments/20040120/288fc1e1/attachment.sig>


More information about the fedora-legacy-list mailing list