Re: [AMaViS-user] AMaViS Security Announcement ASA-2007-1: exploitable security vulnerability in file(1) utility

2007-03-29 Thread Alan Munday
Alexander Bergolth wrote the following on 29/03/2007 10:37: But using the following attached patch for the SPEC-file, it will even build on FC1. Alexander I tried patching the spec file and building on FC5 tonight... but it still fails to build and at the same point that it failed without

Re: [AMaViS-user] AMaViS Security Announcement ASA-2007-1: exploitable security vulnerability in file(1) utility

2007-03-28 Thread Alan Munday
Mark Martinec wrote the following on 23/03/2007 16:22: === AMaViS Security Announcement Solution: update to file 4.20 or later -

Re: [AMaViS-user] AMaViS Security Announcement ASA-2007-1: exploitable security vulnerability in file(1) utility

2007-03-27 Thread alex handle
On 3/23/07, Mark Martinec [EMAIL PROTECTED] wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 === AMaViS Security Announcement Date: 2007-03-23 affected version(s):

Re: [AMaViS-user] AMaViS Security Announcement ASA-2007-1: exploitable security vulnerability in file(1) utility

2007-03-27 Thread Mark Martinec
alex, Vulnerability: file utility Priority: urgent Solution: update to file 4.20 or later Is FreeBSD affected or is the BSD file not same as GNU file? The version from ports (sysutils/file) is 4.20 (since 2007-03-03) but you need to install it. The

Re: [AMaViS-user] AMaViS Security Announcement ASA-2007-1: exploitable security vulnerability in file(1) utility

2007-03-26 Thread Robert Brooks
Mark Martinec wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 === AMaViS Security Announcement Date: 2007-03-23 affected version(s):amavis, amavisd, amavisd-new,

[AMaViS-user] AMaViS Security Announcement ASA-2007-1: exploitable security vulnerability in file(1) utility

2007-03-23 Thread Mark Martinec
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 === AMaViS Security Announcement Date: 2007-03-23 affected version(s):amavis, amavisd, amavisd-new, amavis-ng Vulnerability: