nfs-utils
177
• several utilities shipped with netpbm may have crashed while processing image files. With this
update, this issue has been resolved.
• several utilities shipped with netpbm did not accept files from standard input even though this
method was in accordance with the documentation. With this update, this issue has been resolved.
• the documentation of a number of utilities provided by netpbm did not agree with the actual
usage, described parameters which are not present, and contained various typos and errors. The
documentation of the netpbm utilities is much improved with this update, and the specific problems
listed have been corrected.
All users of netpbm are advised to upgrade to these updated packages, which resolve these issues.
1.153. nfs-utils
1.153.1. RHSA-2009:1321: Low security and bug fix update
An updated nfs-utils package that fixes a security issue and several bugs is now available.
This update has been rated as having low security impact by the Red Hat Security Response Team.
The nfs-utils package provides a daemon for the kernel NFS server and related tools.
It was discovered that nfs-utils did not use tcp_wrappers correctly. Certain hosts access rules defined
in "/etc/hosts.allow" and "/etc/hosts.deny" may not have been honored, possibly allowing remote
attackers to bypass intended access restrictions. (
CVE-2008-4552
1263
)
This updated package also fixes the following bugs:
• the "LOCKD_TCPPORT" and "LOCKD_UDPPORT" options in "/etc/sysconfig/nfs" were not
honored: the lockd daemon continued to use random ports. With this update, these options are
honored. (
BZ#434795
1264
)
• it was not possible to mount NFS file systems from a system that has the "/etc/" directory mounted
on a read-only file system (this could occur on systems with an NFS-mounted root file system). With
this update, it is possible to mount NFS file systems from a system that has "/etc/" mounted on a
read-only file system. (
BZ#450646
1265
)
• arguments specified by "STATDARG=" in "/etc/sysconfig/nfs" were removed by the nfslock init
script, meaning the arguments specified were never passed to rpc.statd. With this update, the
nfslock init script no longer removes these arguments. (
BZ#459591
1266
)
• when mounting an NFS file system from a host not specified in the NFS server's "/etc/exports" file, a
misleading "unknown host" error was logged on the server (the hostname lookup did not fail). With
this update, a clearer error message is provided for these situations. (
BZ#463578
1267
)
• the nhfsstone benchmark utility did not work with NFS version 3 and 4. This update adds support to
nhfsstone for NFS version 3 and 4. The new nhfsstone "-2", "-3", and "-4" options are used to select
an NFS version (similar to nfsstat(8)). (
BZ#465933
1268
)
• the exportfs(8) manual page contained a spelling mistake, "djando", in the EXAMPLES section.
(
BZ#474848
1269
)
1263
https://www.redhat.com/security/data/cve/CVE-2008-4552.html
Summary of Contents for ENTERPRISE 5.4 RELEASE NOTES
Page 1: ...Red Hat Enterprise Linux 5 4 Technical Notes Every Change to Every Package ...
Page 18: ...xviii ...
Page 306: ...288 ...
Page 464: ...446 ...
Page 466: ...448 ...