(Mar 14) NSPR update to work with the new NSS.
Archive for March, 2013
Ubuntu: 1764-1: OpenStack Glance vulnerability
(Mar 14) Glance could be made to expose sensitive information over the network.
Red Hat: 2013:0623-01: tomcat6: Important Advisory
(Mar 11) Updated tomcat6 packages that fix multiple security issues are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having [More…]
Red Hat: 2013:0646-01: pidgin: Moderate Advisory
(Mar 14) Updated pidgin packages that fix three security issues are now available for Red Hat Enterprise Linux 5 and 6. The Red Hat Security Response Team has rated this update as having moderate [More…]
(Mar 12) Several security issues were fixed in Puppet.
Ubuntu: 1760-1: Linux kernel (Oneiric backport) vulnerabilities
(Mar 12) Several security issues were fixed in the kernel.
Red Hat: 2013:0639-01: qemu-kvm-rhev: Important Advisory
(Mar 12) Updated qemu-kvm-rhev packages that fix one security issue are now available for Red Hat OpenStack Folsom. The Red Hat Security Response Team has rated this update as having [More…]
Red Hat: 2013:0630-01: kernel: Important Advisory
(Mar 12) Updated kernel packages that fix two security issues and several bugs are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having [More…]
Plesk Pre-Transfer Checker has been updated to version 6
Following check items have been added:
– check for possible business logic issues
– check for broken relationships between tables siteapppackages and apsapplicationitems
The following bugs have been fixed:
[-] Any installation of osTicket APS application is treated by Plesk as global helpdesk. (114056)
[-] (Windows only) Error “Component php5_4 isn’t supported” at subscription creating (131758)
[-] MySQL databases aren’t migrated from Plesk 9 and Plesk 10 if Plesk admin password containing ‘#’ symbol (120651)
[-] Upgrade php component breaks permissions on php sessions directory (91998)
Ubuntu: 1758-2: Thunderbird vulnerability
(Mar 12) Thunderbird could be made to crash or run programs as your login.
(Mar 13) PHP could be made to expose sensitive information over the network.
Red Hat: 2013:0640-01: tomcat5: Important Advisory
(Mar 12) Updated tomcat5 packages that fix multiple security issues are now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having [More…]
Red Hat: 2013:0643-01: flash-plugin: Critical Advisory
(Mar 13) An updated Adobe Flash Player package that fixes multiple security issues is now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical [More…]
Debian: 2643-1: puppet: Multiple vulnerabilities
(Mar 12) Multiple vulnerabilities were discovered in Puppet, a centralized configuration management system. CVE-2013-1640 [More…]
(Mar 9) Several vulnerabilities have been discovered in sudo, a program designed to allow a sysadmin to give limited root privileges to users. The Common Vulnerabilities and Exposures project identifies the following problems: [More…]
(Mar 9) Yves Orton discovered a flaw in the rehashing code of Perl. This flaw could be exploited to carry out a denial of service attack against code that uses arbitrary user input as hash keys. Specifically an attacker could create a set of keys of a hash causing a denial of service via [More…]
(Mar 8) Firefox could be made to crash or run programs as your login if it opened amalicious website.
Red Hat: 2013:0625-01: java-1.6.0-ibm: Critical Advisory
(Mar 11) Updated java-1.6.0-ibm packages that fix several security issues are now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical [More…]
Red Hat: 2013:0628-01: 389-ds-base: Moderate Advisory
(Mar 11) Updated 389-ds-base packages that fix one security issue and multiple bugs are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having moderate [More…]
March 11, 2013 Houston, TX- cPanel Inc., announces the release of cPanel & WHM 11.36 to the RELEASE tier. Included in this brand new release are further improvements to the update system, building on work started with cPanel & WHM 11.30. A new staging step during installation allows a variety …
Red Hat: 2013:0602-01: java-1.7.0-openjdk: Critical Advisory
(Mar 6) Updated java-1.7.0-openjdk packages that fix two security issues are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having critical [More…]
Red Hat: 2013:0601-01: java-1.6.0-sun: Critical Advisory
(Mar 6) Updated java-1.6.0-sun packages that fix two security issues are now available for Red Hat Enterprise Linux 5 and 6 Supplementary. The Red Hat Security Response Team has rated this update as having critical [More…]
Red Hat: 2013:0604-01: java-1.6.0-openjdk: Important Advisory
(Mar 6) Updated java-1.6.0-openjdk packages that fix two security issues are now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having [More…]
Red Hat: 2013:0608-01: kvm: Important Advisory
(Mar 7) Updated kvm packages that fix one security issue are now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having [More…]
The following new features have been implemented:
[+] Webmail server nodes. Webmail server nodes are now supported. By default, webmail services are provided by the management node. To reduce the load on the management node, administrators can add a webmail server node to the system.
[+] Support for external mail servers. Administrators can add any external mail server to the PPA infrastructure. This may be useful, for example, when you need to use an MTA which is not supported by PPA’s standard mail node roles. The connection with such servers is performed by means of special APS apps, so-called connectors. Such a connector should be developed and registered in PPA before adding an external mail server node.
[+] Login page branding. Administrators and resellers can adjust the appearance of the login page.
[+] Easy changing of the management node’s IP address. Administrators can seamlessly move the management node to another IP address using the /usr/local/ppa/bin/ppa_ipaddress utility.
[+] Support for SNI on branding subscriptions. Administrators and resellers can use unique SSL certificates for brands on shared IP addresses.
[+] Forced retrieval of PPA license keys. Administrators can update the information about their PPA license keys at any time in License & Security > License Manager.
The following functionality have been improved:
[*] Automatic updating of license keys was improved.
[*] Now administrators can limit the number of subdomains on subscriptions.
[*] Administrators can now connect service nodes with CentOS 6.x or RedHat Linux 6.x without needing to preliminarily configure YUM on them.
[*] The migration process was improved: now it is faster and it takes less disk space.
The following bugs have been fixed:
[-] Administrators failed to properly complete the installation of PPA on CentOS 5.8. On attempting to log in to PPA through a web browser, they encountered the “500 Internal Server Error”.
[-] Administrators sometimes failed to connect a service node if (1) they selected two different IP addresses in the node connection settings: one as the backnet IP address (used for communications between service nodes and the management node) and another as the IP address for hosting; and (2) if both IP addresses were from the same subnet range. They encountered the following error in Task Manager: “Can not configure agent on host ‘IP address’, reason: ‘Stopping pleskd: [ OK ].”
[-] Administrators could not create branded subscriptions on dedicated IP addresses. The subscriptions were always created on shared IP addresses.
[-] Administrators could make management nodes inoperable after installing the Apache services. For this reason, PPA no longer allows installing Apache, Postfix and MySQL on management nodes.
[-] Auto-reply messages could not be shown by mail clients due to incorrectly specified MIME type.
[-] Users were unable to host different web content on domains and subdomains that were hosted on the same dedicated IP address.
[-] Users could not calculate the size of a directory in Content Manager. They encountered the following error: “Unable to get size for . System error 13: Permission denied.”
[-] AWStats did not calculate website visits statistics properly.
[-] Administrators failed to create subscriptions with mail services if the mail service was provided by Postfix installed on the management node. They encountered the following error: “Unable to receive setting ‘plesk_mail_service_node_key’.”
[-] License key expiration warnings shown in the Hosting Panel led to a wrong page.
[-] Administrators failed to migrate hosting subscriptions from Plesk for Linux to PPA if at least one SmarterMail service node was connected to PPA.
[-] During migration from Plesk 11.x, the passwords of resellers and customers for access to the Hosting Panel were reset.
[-] Users were unable to switch off mail services for their subscriptions if the services were provided by SmarterMail. The Hosting Panel raised the following error: “Unable to load object of type DSMail with id=127: Mail_Facade->turnOffDomain() failed: Turning domain off is not supported.”
[-] Administrators failed to create subscriptions with Apache and MySQL hosting on a dedicated IP address. They encountered the following error: Error: Database server mysql :3306 does not exist.
[-] The handling of custom ftp.. and www. DNS records was improved.
[-] Migration from Plesk for Linux to PPA could stall due to an internal error.
[-] After migration from Plesk 8 for Linux, applications installed on websites no longer worked because their databases were not migrated.
[-] If CBM was switched on, and a new auxiliary user account with the Accountant role was partially created in the Hosting Panel (the task failed in the process), then after removing that account from the Administration Panel, users will not be able to create an account with the same username again.
[-] During migration from Plesk for Linux 8.6, domains for which hosting was not configured and the Tomcat service was switched off could not be migrated.
[-] MySQL service nodes could not be added if “sa” was used as the database administrator’s username.
[-] Administrators could not migrate domain administrator accounts from Plesk 8.6 if the account information contained non-Latin characters.
Red Hat: 2013:0609-01: qemu-kvm: Important Advisory
(Mar 7) Updated qemu-kvm packages that fix one security issue are now available for Red Hat Enterprise Linux 6. The Red Hat Security Response Team has rated this update as having [More…]
Red Hat: 2013:0611-01: ruby: Moderate Advisory
(Mar 7) Updated ruby packages that fix one security issue are now available for Red Hat Enterprise Linux 5. The Red Hat Security Response Team has rated this update as having moderate [More…]
Ubuntu: 1755-2: OpenJDK 7 vulnerabilities
(Mar 7) OpenJDK could be made to crash or run programs as your login if it opened aspecially crafted file.
(Mar 7) Several security issues were fixed in Django.