SCIENTIFIC-LINUX-DEVEL Archives

June 2017

SCIENTIFIC-LINUX-DEVEL@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Pat Riehecky <[log in to unmask]>
Reply To:
Pat Riehecky <[log in to unmask]>
Date:
Fri, 16 Jun 2017 12:34:26 -0500
Content-Type:
text/plain
Parts/Attachments:
text/plain (19 lines)
A recent security update to rpcbind (SLSA-2017:1267) contained a bug 
that causes rpcbind to crash under some conditions. The specific 
conditions involve the interaction between ypbind, ypserv, and IPv6 
addresses within rpcbind.

The fix (SLBA-2017:1435 and SLBA-2017:1436) is currently available in 
the fastbugs repos. But given that there is potential for a significant 
unplanned outage when the latest rpcbind security update is applied, and 
that many SL systems do not install fastbugs by default, we will push 
SLBA-2017:1435 to security.

Publication of a non-security package to older releases is something the 
SL Team generally does only to permit the installation of security 
updates. We're making an exception for this case.

On June 19 2017, SLBA-2017:1435 and SLBA-2017:1436 will be published for 
all SL6 and SL7 releases so that it supersedes SLSA-2017:1267 in a 
default yum update operation

ATOM RSS1 RSS2