Fedora 12 Update: quota-3.17-9.fc12

updates at fedoraproject.org updates at fedoraproject.org
Thu May 27 18:33:12 UTC 2010


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2010-8372
2010-05-11 19:06:04
--------------------------------------------------------------------------------

Name        : quota
Product     : Fedora 12
Version     : 3.17
Release     : 9.fc12
URL         : http://sourceforge.net/projects/linuxquota/
Summary     : System administration tools for monitoring users' disk usage
Description :
The quota package contains system administration tools for monitoring
and limiting user and or group disk usage per file system.

--------------------------------------------------------------------------------
Update Information:

Prevent kernel accessing to NULL while rpc.rquotad initialization. This flaw
could corrupt user space and let kernel to work on garbage. Also SELinux does
not complain anymore.
--------------------------------------------------------------------------------
ChangeLog:

* Mon May 10 2010 Petr Pisar <ppisar at redhat.com> 1:3.17-9
- Prevent corruptive read/write from/to NULL address in rpc.rquotad
  (Resolves #528581, example in #532342)
- Fix spelling in summary
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #528581 - rpc.rquotad calls quotactl with garbage arguments
        https://bugzilla.redhat.com/show_bug.cgi?id=528581
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use 
su -c 'yum update quota' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list