RHSA-2005:524-05 中(Moderate):freeradiusのセキュリティアップ
RHSA-2005:524-05 中(Moderate):freeradiusのセキュリティアップデートデート
0.改訂履歴
1.はじめに
このドキュメントでは,RHSA-2005:524-05に準ずるfreeradiusのアップデート手順を説明する. 欠陥が悪用されると、バッファオーバーフロー,クラッシュ,任意のSQLクエリ実行等の問題がある.
2.内容
- 今回のセキュリティについては,以下のページを参照.
- 中(Moderate):freeradiusのセキュリティアップデート
- これまでのすべての情報については,以下のページを参照.
- Red Hat Enterprise Linux ES (v. 3)のアップデート情報
3.アップデートログ
[root@mars RHSA-2005-524_freeradious]# ls -la
total 1244
drwxr-xr-x 2 root root 4096 Sep 6 11:55 .
drwxr-xr-x 9 root root 4096 Sep 6 11:55 ..
-rw-r--r-- 1 root root 1258345 Jun 24 04:21 freeradius-1.0.1-1.1.RHEL3.i386.rpm
[root@mars RHSA-2005-524_freeradious]#
|
[root@mars RHSA-2005-524_freeradious]# rpm -Fvh freeradius-1.0.1-1.1.RHEL3.i386.rpm
warning: freeradius-1.0.1-1.1.RHEL3.i386.rpm: V3 DSA signature: NOKEY, key ID db42a60e
Preparing... ########################################### [100%]
1:freeradius warning: /etc/pam.d/radiusd created as
/etc/pam.d/radiusd.rpmnew
warning: /etc/raddb/acct_users created as /etc/raddb/acct_users.rpmnew
warning: /etc/raddb/certs/README created as /etc/raddb/certs/README.rpmnew
warning: /etc/raddb/certs/cert-clt.der created as /etc/raddb/certs/cert-clt.der.rpmnew
warning: /etc/raddb/certs/cert-clt.p12 created as /etc/raddb/certs/cert-clt.p12.rpmnew
warning: /etc/raddb/certs/cert-clt.pem created as /etc/raddb/certs/cert-clt.pem.rpmnew
warning: /etc/raddb/certs/cert-srv.der created as /etc/raddb/certs/cert-srv.der.rpmnew
warning: /etc/raddb/certs/cert-srv.p12 created as /etc/raddb/certs/cert-srv.p12.rpmnew
warning: /etc/raddb/certs/cert-srv.pem created as /etc/raddb/certs/cert-srv.pem.rpmnew
warning: /etc/raddb/certs/demoCA/cacert.pem created as /etc/raddb/certs/demoCA/cacert.pem.rpmnew
warning: /etc/raddb/certs/demoCA/index.txt created as
/etc/raddb/certs/demoCA/index.txt.rpmnew
warning: /etc/raddb/certs/demoCA/index.txt.old created as
/etc/raddb/certs/demoCA/index.txt.old.rpmnew
warning: /etc/raddb/certs/demoCA/serial created as /etc/raddb/certs/demoCA/serial.rpmnew
warning: /etc/raddb/certs/demoCA/serial.old created as
/etc/raddb/certs/demoCA/serial.old.rpmnew
warning: /etc/raddb/certs/dh created as /etc/raddb/certs/dh.rpmnew
warning: /etc/raddb/certs/newcert.pem created as /etc/raddb/certs/newcert.pem.rpmnew
warning: /etc/raddb/certs/newreq.pem created as /etc/raddb/certs/newreq.pem.rpmnew
warning: /etc/raddb/certs/random created as /etc/raddb/certs/random.rpmnew
warning: /etc/raddb/certs/root.der created as /etc/raddb/certs/root.der.rpmnew
warning: /etc/raddb/certs/root.p12 created as /etc/raddb/certs/root.p12.rpmnew
warning: /etc/raddb/certs/root.pem created as /etc/raddb/certs/root.pem.rpmnew
warning: /etc/raddb/clients created as /etc/raddb/clients.rpmnew
warning: /etc/raddb/clients.conf created as /etc/raddb/clients.conf.rpmnew
warning: /etc/raddb/dictionary saved as /etc/raddb/dictionary.rpmsave
warning: /etc/raddb/eap.conf created as /etc/raddb/eap.conf.rpmnew
warning: /etc/raddb/experimental.conf created as /etc/raddb/experimental.conf.rpmnew
warning: /etc/raddb/hints created as /etc/raddb/hints.rpmnew
warning: /etc/raddb/mssql.conf created as /etc/raddb/mssql.conf.rpmnew
warning: /etc/raddb/oraclesql.conf created as /etc/raddb/oraclesql.conf.rpmnew
warning: /etc/raddb/postgresql.conf created as /etc/raddb/postgresql.conf.rpmnew
warning: /etc/raddb/preproxy_users created as /etc/raddb/preproxy_users.rpmnew
warning: /etc/raddb/proxy.conf created as /etc/raddb/proxy.conf.rpmnew
warning: /etc/raddb/radiusd.conf created as /etc/raddb/radiusd.conf.rpmnew
warning: /etc/raddb/realms created as /etc/raddb/realms.rpmnew
warning: /etc/raddb/sql.conf created as /etc/raddb/sql.conf.rpmnew
########################################### [100%]
[root@mars RHSA-2005-524_freeradious]#
|
- 設定ファイル等がバックアップがとられている.
- パッケージを確認する.
[root@mars RHSA-2005-524_freeradious]# rpm -qa|grep freera
freeradius-1.0.1-1.1.RHEL3
[root@mars RHSA-2005-524_freeradious]#
|