Milan Keršláger
2009-Feb-05 21:25 UTC
[CentOS] Security update missing - kernel-2.6.18-128.el5
Please, do not delay this "Important" multiple security update. See https://rhn.redhat.com/errata/RHSA-2009-0225.html for more info. This update is "5.3" kernel but has been released as security update too. RHN pushed this kernel one day ahead of rest of 5.3 packages (on my servers). RH maintains API and ABI (!) compatibility so there is no problem to use this kernel AFAIK. So please, do not delay it anymore, this contains multiple security vulnerabilities fixed since 2009-01-20. Thank you for your effort (a lot). M.K. -- Milan Ker?l?ger http://www.pslib.cz/ke/ http://www.nti.tul.cz/wiki/Milan.Kerslager
On Thu, Feb 05, 2009 at 10:25:14PM +0100, Milan Ker?l?ger wrote:> Please, > > do not delay this "Important" multiple security update. See > https://rhn.redhat.com/errata/RHSA-2009-0225.html for more info. > > This update is "5.3" kernel but has been released as security update > too. RHN pushed this kernel one day ahead of rest of 5.3 packages (on my > servers). > > RH maintains API and ABI (!) compatibility so there is no problem to use > this kernel AFAIK.but this kernel -128 version requires a newer version of ecryptfs-utils from 5.3... So afaik there will be no newer kernel until 5.3 is released. Cheers, Tru -- Tru Huynh (mirrors, CentOS-3 i386/x86_64 Package Maintenance) http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xBEFA581B -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available URL: <http://lists.centos.org/pipermail/centos/attachments/20090205/9637d445/attachment.sig>
Kay Diederichs
2009-Feb-06 09:27 UTC
[CentOS] Security update missing - kernel-2.6.18-128.el5
Milan Ker?l?ger schrieb:> Please, > > do not delay this "Important" multiple security update. See > https://rhn.redhat.com/errata/RHSA-2009-0225.html for more info. > > This update is "5.3" kernel but has been released as security update > too. RHN pushed this kernel one day ahead of rest of 5.3 packages (on my > servers). > > RH maintains API and ABI (!) compatibility so there is no problem to use > this kernel AFAIK. > > So please, do not delay it anymore, this contains multiple security > vulnerabilities fixed since 2009-01-20. > > Thank you for your effort (a lot). > > M.K. >while the CentOS people work on it, you could obtain the kernel from http://people.redhat.com/dzickus/el5/ HTH Kay