[SECURITY] Fedora 9 Update: rkhunter-1.3.2-5.fc9

updates at fedoraproject.org updates at fedoraproject.org
Thu Sep 25 00:21:43 UTC 2008


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2008-8314
2008-09-24 12:38:34
--------------------------------------------------------------------------------

Name        : rkhunter
Product     : Fedora 9
Version     : 1.3.2
Release     : 5.fc9
URL         : http://rkhunter.sourceforge.net/
Summary     : A host-based tool to scan for rootkits, backdoors and local exploits
Description :
Rootkit Hunter (RKH) is an easy-to-use tool which checks
computers running UNIX (clones) for the presence of rootkits
and other unwanted tools.

--------------------------------------------------------------------------------
ChangeLog:

* Wed Sep  3 2008 Kevin Fenzi <kevin at tummy.com> - 1.3.2-5
- Patch debug tmp file issue - bug #460628
* Mon Jun 16 2008 Kevin Fenzi <kevin at tummy.com> - 1.3.2-4
- Fix cron script to only mail on warn/error - bug #450703
- Fix conditional to account for fc10 rsyslog
* Mon Apr 28 2008 Kevin Fenzi <kevin at tummy.com> - 1.3.2-3
- Change cron to run after prelink - bug #438622
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #460628 - rkhunter: Insecure auxiliary /tmp file usage (symlink attack possible)
        https://bugzilla.redhat.com/show_bug.cgi?id=460628
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update rkhunter' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
http://fedoraproject.org/keys
--------------------------------------------------------------------------------




More information about the Fedora-package-announce mailing list