Fedora Legacy Test Update Notification: telnet

Marc Deslauriers marcdeslauriers at videotron.ca
Fri Jun 24 18:47:51 UTC 2005


---------------------------------------------------------------------
Fedora Legacy Test Update Notification
FEDORALEGACY-2005-152583
Bugzilla https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152583
2005-06-24
---------------------------------------------------------------------

Name        : telnet
Versions    : rh73: telnet-0.17-20.1.legacy
Versions    : rh9: telnet-0.17-25.1.legacy
Versions    : fc1: telnet-0.17-26.2.1.legacy
Summary     : The client program for the telnet remote login protocol.
Description :
Telnet is a popular protocol for logging into remote systems over the
Internet. The telnet package provides a command line telnet client.

---------------------------------------------------------------------
Update Information:

Updated telnet packages that fix two buffer overflow vulnerabilities are
now available.

The telnet package provides a command line telnet client. The telnet-
server package includes a telnet daemon, telnetd, that supports remote
login to the host machine.

Two buffer overflow flaws were discovered in the way the telnet client
handles messages from a server. An attacker may be able to execute
arbitrary code on a victim's machine if the victim can be tricked into
connecting to a malicious telnet server. The Common Vulnerabilities and
Exposures project (cve.mitre.org) has assigned the names CAN-2005-0468
and CAN-2005-0469 to these issues.

Users of telnet should upgrade to this updated package, which contains
backported patches to correct these issues.

---------------------------------------------------------------------
Changelogs

rh73:
* Wed May 11 2005 Pekka Savola <pekkas at netcore.fi> 1:0.17-20.1.legacy
- Apply RHEL patch to fix CAN-2005-0469 and CAN-2005-0468 (#152583)

rh9:
* Wed May 11 2005 Pekka Savola <pekkas at netcore.fi> 1:0.17-25.1.legacy
- Apply RHEL patch to fix CAN-2005-0469 and CAN-2005-0468 (#152583)

fc1:
* Wed May 11 2005 Pekka Savola <pekkas at netcore.fi> 1:0.17-26.2.1.legacy
- Apply RHEL patch to fix CAN-2005-0469 and CAN-2005-0468 (#152583)

---------------------------------------------------------------------
This update can be downloaded from:
  http://download.fedoralegacy.org/
(sha1sums)

rh73:
eb72994dc7fa63672d461f1b80189e450b7dc7ab
redhat/7.3/updates-testing/i386/telnet-0.17-20.1.legacy.i386.rpm
ae27914b4039594609d14d209c466f78b09649d4
redhat/7.3/updates-testing/i386/telnet-server-0.17-20.1.legacy.i386.rpm
3e426f9573240179fb31d5407ef9a25b82b836ec
redhat/7.3/updates-testing/SRPMS/telnet-0.17-20.1.legacy.src.rpm

rh9:
114ead8f946fd9f50f88ed017f03a2302647ebd1
redhat/9/updates-testing/i386/telnet-0.17-25.1.legacy.i386.rpm
e5c31fdc2b08cd4a5614101be249a4888d87ded0
redhat/9/updates-testing/i386/telnet-server-0.17-25.1.legacy.i386.rpm
acf5dc1ab3bbe1d704963eefe79fb66521a012da
redhat/9/updates-testing/SRPMS/telnet-0.17-25.1.legacy.src.rpm

fc1:
3298baa93d57f2caa2110bc83ae45731fc8c41e7
fedora/1/updates-testing/i386/telnet-0.17-26.2.1.legacy.i386.rpm
208769de63330b46785dbe0b23502c37307dfa65
fedora/1/updates-testing/i386/telnet-server-0.17-26.2.1.legacy.i386.rpm
58836e7c8741f08c5da712f6dc7cbd3d7a5581e8
fedora/1/updates-testing/SRPMS/telnet-0.17-26.2.1.legacy.src.rpm

---------------------------------------------------------------------

Please test and comment in bugzilla.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: OpenPGP digital signature
URL: <http://listman.redhat.com/archives/fedora-legacy-list/attachments/20050624/9256cb6a/attachment.sig>


More information about the fedora-legacy-list mailing list