Koozali.org: home of the SME Server

SME 6 Maintenance Updates 3rd December 2005

Offline wellsi

  • *
  • 475
  • +0/-0
    • http://www.wellsi.com
SME 6 Maintenance Updates 3rd December 2005
« on: December 04, 2005, 12:59:28 AM »
The maintenance team would like to announce that the following packages are available from the updates repositories for SME 6.0, 6.0.1 & 6.5RC1.


To update your server see http://no.longer.valid/phpwiki/index.php/How%20to%20update%20SME%20Server
To help this process see http://no.longer.valid/phpwiki/index.php/Maintenance%20Process


Follow the steps below to update using yum. These need to be entered from the command line.

    yum update
    /sbin/e-smith/signal-event post-upgrade
    /sbin/e-smith/signal-event reboot


Packages in updates-common

cyrus-sasl-1.5.24-25.2.legacy.i386.rpm
cyrus-sasl-md5-1.5.24-25.2.legacy.i386.rpm

   For SME 6.0 & 6.0.1
   
   FL Note: http://www.fedoralegacy.org/updates/RH7.3/2005-02-17-FLSA_2005_2137__Updated_cyrus_sasl_resolves_security_vulnerabilities.html
   FL Bug : https://bugzilla.fedora.us/show_bug.cgi?id=2137

   At application startup, libsasl and libsasl2 attempts to build a list
   of all available SASL plug-ins which are available on the system. To do
   so, the libraries search for and attempt to load every shared library found
   within the plug-in directory. This location can be set with the SASL_PATH
   environment variable.

   In situations where an untrusted local user can affect the environment of a
   privileged process, this behavior could be exploited to run arbitrary code
   with the privileges of a setuid or setgid application. The Common
   Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name
   CAN-2004-0884 to this issue.


e-smith-LPRng-1.12.0-04.noarch.rpm

   For SME 6.0 & 6.0.1

   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/

   Bug Fix for Bug 26

   * Fri Jan 30 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.12.0-04]
   - Backed-out bug 5558. It doesn't quite work yet, so we're going to try again
     in 6.1. [msoulier 5558]

   * Mon Jan 26 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.12.0-03]
   - Fixed runtime error in LPRng-restart. [msoulier 10877]

   * Fri Jan 23 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.12.0-02]
   - Adding ability to view the print queue, and delete one's jobs.
     [msoulier 5558]

   * Thu Jan 22 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.12.0-01]
   - rolling to stable - 1.12.0

   * Tue Jan  6 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.11.0-06]
   - Added 6.0 styling to printer panel. [msoulier 10876]


e-smith-dnscache-0.3.0-04sme02.noarch.rpm
   
   For SME 6.0 & 6.0.1 (This version was already in 6.5RC1)
   
   Bug Fix for Bug 109.
   dnscache creating reverse entries for all localnetworks

   * Thu Jan 27 2005 Shad L. Lords <slords@mail.com>
   - [0.3.0-04sme02]
   - Create ForwardOnly defaulting to enabled for forwarder

   * Mon Jan 24 2005 Shad L. Lords <slords@mail.com>
   - [0.3.0-04sme01]
   - Only create reverse entries if local network or defined dns entry


e-smith-email-4.14.0-11.noarch.rpm   

   For SME 6.0 & 6.0.1
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/
   
   Bug Fix for Bug 2

   * Thu Feb 12 2004 Mark Knox <markk@e-smith.com>
   - [4.14.0-11]
   - Fixed broken expansion of /etc/fetchmail in email-update event [markk 10064]
   - Fixed buggy template causing multidrop to fail [markk 10064]

   * Tue Jan 27 2004 Michael Soulier <msoulier@e-smith.com>
   - [4.14.0-10]
   - Added migration fragment to migrate broken Visisble property.
     [msoulier 10907]

   * Mon Jan 26 2004 Michael Soulier <msoulier@e-smith.com>
   - [4.14.0-09]
   - Fixed spelling of Visible in defaults fragment. [msoulier 10907]

   * Sun Sep 21 2003 Charlie Brady <charlieb@e-smith.com>
   - [4.14.0-08]
   - Remove duplicate primary domain name in multidrop fetchmail template
     [charlieb 10064]

   * Wed Aug 27 2003 Michael Soulier <msoulier@e-smith.com>
   - [4.14.0-07]
   - Added K* init symlinks to runlevels 0, 1 and 6 for popd. [msoulier 9761]

   
e-smith-imap-1.2.0-03.noarch.rpm
   
   For SME 6.0 & 6.0.1
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/
   
   * Tue Jan 27 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.2.0-03]
   - Fixed scoping problem with function for concurrency template.
     [msoulier 10871]

   * Tue Jan 27 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.2.0-02]
   - Adding an imap concurrency "throttle", based on the number of users.
     [msoulier 10871]

   * Tue Jan 27 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.2.0-01]
   - rolling to stable - 1.2.0

   * Fri Nov 28 2003 Charlie Brady <charlieb@e-smith.com>
   - [1.1.0-02]
   - Move setup of cvm environment variables into CDB file. Saves
     execution of envdir, and allows customisation per IP address.
     [charlieb]

   * Fri Nov 28 2003 Charlie Brady <charlieb@e-smith.com>
   - [1.1.0-01]
   - Changing version to development stream number - 1.1.0

   * Wed Aug 27 2003 Michael Soulier <msoulier@e-smith.com>
   - [1.0.0-03]
   - Added K* init symlinks for runlevels 0, 1 and 6. [msoulier 9761]
   

e-smith-ldap-4.10.0-03sme02
   
   For SME 6.0 & 6.0.1 (This version was already in 6.5RC1)
   
   Bug Fix for Bug 158.
   changing ldap dir settings to existing users does not work

   * Sun Feb 06 2005 Shad L. Lords <slords@mail.com>
   - [4.10.0-03sme02]
   - Do a graceful restart instead of full restart on directory save


e-smith-mailfront-1.4.0-01.noarch.rpm   

   For SME 6.0 & 6.0.1
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/

   * Thu Jan 29 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.4.0-01]
   - rolling to stable - 1.4.0
   - Backout of previous change. Wrong stream. [msoulier 10052]

   * Fri Sep 19 2003 Charlie Brady <charlieb@e-smith.com>
   - [1.3.0-12]
   - Fix new_record call in migrate fragment. [charlieb 10052]


e-smith-packetfilter-1.14.0-03.noarch.rpm

   For SME 6.0 & 6.0.1
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/

   * Thu Jan  8 2004 Mark Knox <markk@e-smith.com>
   - [1.14.0-03]
   - Backported fix of bug 10162, solving a problem with masq expansion in
     server-only mode [markk 10882]


e-smith-proftpd-1.10.0-04.noarch.rpm   

   For SME 6.0 & 6.0.1

   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/
   
   * Mon Jan 26 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.10.0-04]
   - Added AllowRetrieveRestart and AllowStoreRestart global options.
     [msoulier 9398]

   * Mon Jan 26 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.10.0-03]
   - Fixed duplication of Anonymous section. [msoulier 9184]
   

e-smith-proxy-4.12.0-02.noarch.rpm

   For SME 6.0 & 6.0.1 (This version was already in 6.5RC1)
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/
   
   * Tue Sep  9 2003 Gordon Rowell <gordonr@e-smith.com>
   - [4.12.0-02]
   - Disable safe_ports ACL by default. Create squid{SafePorts}
     default ports list and squid{EnforceSafePorts} default to no [gordonr 9488]

   
e-smith-qmail-1.8.0-04.noarch.rpm

   For SME 6.0 & 6.0.1 (This version was already in 6.5RC1)
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/
   
   * Wed Mar 31 2004 Tony Clayton <apc@e-smith.com>
   - [1.8.0-04]
   - Pulling in spec file changes for last patch [tonyc MN00020822]

   * Fri Feb 13 2004 Mark Knox <markk@e-smith.com>
   - [1.8.0-03]
   - Shadow MN00020522: Removed migrate-qmail-logfiles [markk MN00020822]

   * Thu Aug 28 2003 Michael Soulier <msoulier@e-smith.com>
   - [1.8.0-02]
   - Adding K* init symlinks in runlevels 0, 1 and 6. [msoulier 9761]


e-smith-samba-1.12.0-02.noarch.rpm   

   For SME 6.0 & 6.0.1
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/
   
   * Thu Feb  5 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.12.0-02]
   - Updating the build dependencies. [msoulier 10995]

   * Wed Feb  4 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.12.0-01]
   - rolling to stable - 1.12.0

   * Wed Feb  4 2004 Mark Knox <markk@e-smith.com>
   - [1.11.0-16]
   - Include rc1.d/K35smb symlink for proper shutdown in single user mode
     [markk 10958]

   * Tue Nov 25 2003 Michael Soulier <msoulier@e-smith.com>
   - [1.11.0-15]
   - Removing client driver option, to move to [printers] section.
     [msoulier 10623]
   

e-smith-turba-1.4.0-01.noarch.rpm

   For SME 6.0 & 6.0.1 (This version was already in 6.5RC1)
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/   
   
   * Wed Feb  4 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.4.0-01]
   - rolling to stable - 1.4.0


krb5-libs-1.2.4-16.1.legacy.i386.rpm

   For all SME 6.x

   FL Note: http://www.fedoralegacy.org/updates/RH7.3/2005-07-24-FLSA_2005_154276__Updated_krb5_packages_fix_security_issues.html
   FL Bug : https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=154276

   Several buffer overflows were possible for all Kerberos versions up to
   and including 1.3.3 in the krb5_aname_to_localname library function. The
   Common Vulnerabilities and Exposures project (cve.mitre.org) has
   assigned the name CAN-2004-0523 to this issue.

   Several double-free bugs were found in the Kerberos 5 KDC and libraries.
   A remote attacker could potentially exploit these flaws to execuate
   arbitrary code. The Common Vulnerabilities and Exposures project
   (cve.mitre.org) has assigned the names CAN-2004-0642 and CAN-2004-0643
   to these issues.

   A double-free bug was also found in the krb524 server. The Common
   Vulnerabilities and Exposures project (cve.mitre.org) has assigned the
   name CAN-2004-0772 to this issue.

   An infinite loop bug was found in the Kerberos 5 ASN.1 decoder library.
   A remote attacker may be able to trigger this flaw and cause a denial of
   service. The Common Vulnerabilities and Exposures project
   (cve.mitre.org) has assigned the name CAN-2004-0644 to this issue.

   A heap based buffer overflow bug was found in the administration library
   of Kerberos 1.3.5 and earlier. This bug could allow an authenticated
   remote attacker to execute arbitrary commands on a realm's master
   Kerberos KDC. The Common Vulnerabilities and Exposures project
   (cve.mitre.org) has assigned the name CAN-2004-1189 to this issue.

   Additionally a temporary file bug was found in the Kerberos krb5-send-pr
   program. It is possible that an attacker could create a temporary file
   that would allow an arbitrary file to be overwritten which the victim
   has write access to. The Common Vulnerabilities and Exposures project
   (cve.mitre.org) has assigned the name CAN-2004-0971 to this issue.

   The krb5-workstation package includes a Kerberos-aware telnet client.
   Two buffer overflow flaws were discovered in the way the telnet client
   handles messages from a server. An attacker may be able to execute
   arbitrary code on a victim's machine if the victim can be tricked into
   connecting to a malicious telnet server. The Common Vulnerabilities and
   Exposures project (cve.mitre.org) has assigned the names CAN-2005-0468
   and CAN-2005-0469 to these issues.

   All users of krb5 should upgrade to these updated packages, which
   contain backported security patches to resolve these issues.


openssl-0.9.6b-39.7.legacy.i386.rpm

   For all SME 6.x

   FL Note: http://www.fedoralegacy.org/updates/RH7.3/2005-07-15-FLSA_2005_152841__Updated_openssl_packages_fix_security_issues.html
   FL Bug : https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=152841

   A flaw was found in the way the der_chop script creates temporary files.
   It is possible that a malicious local user could cause der_chop to
   overwrite files (CAN-2004-0975).


perl-CGI-FormMagick-0.89-09.noarch.rpm   
   
   For SME 6.0 & 6.0.1
   
   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/SRPMS/
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/RPMS/i386/
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/RPMS/noarch/


rsync-2.5.7-2.legacy.7x.i386.rpm

   For SME 6.0 & 6.0.1 (This version was already in 6.5RC1)
   
   FL Note: http://www.fedoralegacy.org/updates/RH7.3/2004-09-30-FLSA_2004_2003__Updated_rsync_package_fixes_security_issues.html
   FL Bug : https://bugzilla.fedora.us/show_bug.cgi?id=2003

   Rsync before 2.6.1 does not properly sanitize paths when running a
   read/write daemon without using chroot. This could allow a remote
   attacker
   to write files outside of the module's "path", depending on the
   privileges
   assigned to the rsync daemon. Users not running an rsync daemon, running
   a
   read-only daemon, or running a chrooted daemon are not affected by this
   issue. The Common Vulnerabilities and Exposures project (cve.mitre.org)
   has assigned the name CAN-2004-0426 to this issue.

   Versions of rsync up to and including version 2.6.2 contain a path
   sanitization issue. This issue could allow an attacker to read or write
   files outside of the rsync directory. This vulnerability is only
   exploitable when an rsync server is enabled and is not running within a
   chroot. The Common Vulnerabilities and Exposures project (cve.mitre.org)
   has assigned the name CAN-2004-0792 to this issue.


shadow-utils-20000902-9.7es1.i386.rpm

   For SME 6.0 & 6.0.1 (This version was already in 6.5RC1)
   
   RH Note: https://rhn.redhat.com/errata/RHSA-2003-057.html

   Note this has one patch applied.
   
   Updated shadow-utils packages correct a bug that caused the useradd tool to
   create mail spools with incorrect permissions.
   
   The shadow-utils package includes programs for converting UNIX password
   files to the shadow password format, plus programs for managing user and
   group accounts. One of these programs is useradd and is used to create or
   update new user information.
   
   When creating a user account, the version of useradd
   creates a mailbox file with incorrectly-set
   group ownership. Instead of setting the file's group ownership to the
   'mail' group, it is set to the user's primary group.
   
   These erratum packages contain an updated patch to useradd. Where a 'mail'
   group exists, mailboxes will be created with group 'mail' having read and
   write permissions. Otherwise the mailbox file will be created without
   group read and write permissions.   

   Additional Patch

   * Mon Feb 16 2004 Damien Curtain <damien@pagefault.org> 20000902-9.7es1
   - Add fix from previous e-smith release:
   - Fix problem with long lines in /etc/group. Patch recovered from PLD
   - shadow-4.0.0 RPM.


stunnel-3.26-1.7.3es01.i386.rpm

   For SME 6.0 & 6.0.1 (This version was already in 6.5RC1)
   
   RH Note: http://rhn.redhat.com/errata/RHSA-2003-296.html

   Note this has one patch applied.

   Updated stunnel packages are now available. These updates address
   problems stemming from improper use of non-reentrant functions
   in signal handlers.

   Stunnel is a wrapper for network connections. It can be used to tunnel an
   unencrypted network connection over an encrypted connection (encrypted
   using SSL or TLS) or to provide an encrypted means of connecting to
   services that do not natively support encryption.

   A previous advisory provided updated packages to address re-entrancy
   problems in stunnel's signal-handling routines. These updates did not
   address other bugs that were found by Steve Grubb, and introduced an
   additional bug, which was fixed in stunnel 3.26.

   Additional Patch
   * Mon Feb 16 2004 Damien Curtain <damien@pagefault.org> 3.26-1.7.3es01
   - Add fix from previous e-smith release:
   - Add Scott Gifford's STARTTLS proxy patches and makesock program.
   - (Ported to 3.26).


Packages for only 6.0
http://mirror.contribs.org/smeserver/releases/6.0/updates/

e-smith-formmagick-1.2.2-02.noarch.rpm

   For SME 6.0 only

   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/
   
   * Tue Apr  6 2004 Tony Clayton <apc@e-smith.com>
   - [1.2.2-02]
   - Remove stray LOG reference [tonyc MN00025561]

   
e-smith-horde-1.10.0-02.noarch.rpm   

   For SME 6.0 only

   Mitel update from
   ftp://ibiblio.org/pub/linux/distributions/e-smith/updates/6.0/
   Bug Fix for Bug 12
   
   * Mon Jan 26 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.10.0-02]
   - Added directive to block access to test.php scripts in horde.
     [msoulier 7376]

   * Tue Jan 20 2004 Mark Knox <markk@e-smith.com>
   - [1.10.0-01]
   - Rolling to stable. Bug 10917. - 1.10.0

   * Tue Jan  6 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.9.0-17]
   - Fixed bad variable reference in conf-horde-startup. [msoulier 10855]

   * Tue Jan  6 2004 Michael Soulier <msoulier@e-smith.com>
   - [1.9.0-16]
   - Fixed ordering of template expansion to symlink creation. [msoulier 10855]

   * Tue Dec 23 2003 Michael Soulier <msoulier@e-smith.com>
   - [1.9.0-15]
   - Fixed ordering of password set and template expansion. Removed password set
     from update privs script. One place to set the password is enough.
     [msoulier 10855]

   * Mon Dec 22 2003 Michael Soulier <msoulier@e-smith.com>
   - [1.9.0-14]
   - Fixed typo in conf-horde. [msoulier 7112]

   * Fri Dec 19 2003 Michael Soulier <msoulier@e-smith.com>
   - [1.9.0-13]
   - Moved code to set the random horde password into conf-horde.
     [msoulier 7112]

   * Thu Dec 18 2003 Michael Soulier <msoulier@e-smith.com>
   - [1.9.0-12]
   - Make sure that the horde password is alphabetical. [msoulier 7112]
............

bovnet

SME 6 Maintenance Updates 3rd December 2005
« Reply #1 on: December 11, 2005, 11:03:29 AM »
Getting this after applying updates

/etc/cron.daily/logrotate:
 
error: error accessing /var/log/proftpd: No such file or directory
error: proftpd:11 glob failed for /var/log/proftpd/*.log

Offline NickR

  • *
  • 283
  • +0/-0
    • http://www.witzendcs.co.uk/
SME 6 Maintenance Updates 3rd December 2005
« Reply #2 on: December 11, 2005, 07:13:27 PM »
Quote from: "bovnet"
Getting this after applying updates

/etc/cron.daily/logrotate:
 
error: error accessing /var/log/proftpd: No such file or directory
error: proftpd:11 glob failed for /var/log/proftpd/*.log


Solution:

mkdir -p /var/log/proftpd
--
Nick......

RonM

SME 6 Maintenance Updates 3rd December 2005
« Reply #3 on: December 11, 2005, 08:14:52 PM »
Quote from: "bovnet"
Getting this after applying updates

/etc/cron.daily/logrotate:
 
error: error accessing /var/log/proftpd: No such file or directory
error: proftpd:11 glob failed for /var/log/proftpd/*.log


There is a posted bug for this error
http://bugs.contribs.org/show_bug.cgi?id=284

and a cpl of rpms to test the fix for it.

I don't know why the rpms weren't in the last batch of SME6x upgrades/patches; perhaps because only one person has reported success with them. I would have sworn that I did, but it's not in the bug report (which I'll address). Anyway it worked for me, too.

If you try the rpms, please post the results in the bug.

Thanks, RonM

Offline wellsi

  • *
  • 475
  • +0/-0
    • http://www.wellsi.com
SME 6 Maintenance Updates 3rd December 2005
« Reply #4 on: December 11, 2005, 09:24:06 PM »
The fix is currently in the testing directory, see the report: http://bugs.contribs.org/show_bug.cgi?id=298

Once (or if) it is verified it can be moved swiftly into the updates directory.
............

dhardy

SME 6 Maintenance Updates 3rd December 2005
« Reply #5 on: December 19, 2005, 07:55:04 PM »
I've had a little error .....

root@localhost's password: ****************
Last login: Fri Nov 25 22:27:58 2005 from 192.168.xxx.yyy
Welcome to the Mitel Networks SME Server.

[root@fleable root]#  yum update
Gathering package information from servers
Getting headers from: SME Server 6.x base updates
Getting headers from: SME Server 6.0.1 os
Getting headers from: SME Server 6.0.1 updates
Getting headers from: SME Server 6.0.1 updates-testing
Getting headers from: SME Server 6.0.1 updates-testing-common
Finding updated packages
Downloading needed headers
getting /var/cache/yum/updates-testing-common/headers/php-imap-0-4.1.2-7.3.18.legacy.sme1.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/bzip2-libs-0-1.0.2-2.2.73.legacy.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/glibc-common-0-2.2.5-44.legacy.6.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/mod_ssl-0-2.8.12-8.legacy.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/imp-0-3.2.1-2es01sme1.noarch.hdr
getting /var/cache/yum/common-updates/headers/proftpd-5-1.2.9-es3sme1.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/php-0-4.1.2-7.3.18.legacy.sme1.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/samba-common-0-2.2.12-0.73.7.legacy.sme1.i386.hdr
getting /var/cache/yum/updates-testing/headers/e-smith-base-0-4.14.1-16sme1.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/php-ldap-0-4.1.2-7.3.18.legacy.sme1.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/e-smith-imap-0-1.2.0-03sme001.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/e-smith-flexbackup-0-1.8.0-01sme1.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/samba-client-0-2.2.12-0.73.7.legacy.sme1.i386.hdr
getting /var/cache/yum/updates-testing/headers/e-smith-hosts-0-1.12.0-02sme1.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/e-smith-backup-0-1.13.2-02sme01.noarch.hdr
getting /var/cache/yum/common-updates/headers/e-smith-samba-0-1.12.0-02.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/cvs-0-1.11.1p1-17.legacy.sme1.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/e-smith-mailfront-0-1.4.0-01sme1.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/rp-pppoe-0-3.3-10.legacy.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/yum-0-1.0.3-7sme06.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/e-smith-apache-0-1.0.1-01sme2.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/bzip2-0-1.0.2-2.2.73.legacy.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/samba-0-2.2.12-0.73.7.legacy.sme1.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/e-smith-openssh-0-1.10.1-01sme2.noarch.hdr
getting /var/cache/yum/updates-testing/headers/e-smith-lilo-0-1.12.0-04sme1.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/php-mysql-0-4.1.2-7.3.18.legacy.sme1.i386.hdr
getting /var/cache/yum/updates-testing-common/headers/perl-CGI-FormMagick-0-0.91-15sme02.noarch.hdr
getting /var/cache/yum/updates-testing-common/headers/glibc-0-2.2.5-44.legacy.6.i386.hdr
Resolving dependencies
Dependencies resolved
I will do the following:
[update: e-smith-imap.noarch]
[update: perl-CGI-FormMagick.noarch]
[update: yum.noarch]
[update: e-smith-lilo.noarch]
[update: php-ldap.i386]
[update: glibc-common.i386]
[update: mod_ssl.i386]
[update: e-smith-hosts.noarch]
[update: samba.i386]
[update: proftpd.i386]
[update: samba-common.i386]
[update: e-smith-openssh.noarch]
[update: imp.noarch]
[update: e-smith-mailfront.noarch]
[update: cvs.i386]
[update: e-smith-flexbackup.noarch]
[update: e-smith-backup.noarch]
[update: php-imap.i386]
[update: e-smith-apache.noarch]
[update: e-smith-base.noarch]
[update: glibc.i386]
[update: bzip2-libs.i386]
[update: rp-pppoe.i386]
[update: bzip2.i386]
[update: php.i386]
[update: php-mysql.i386]
[update: samba-client.i386]
[update: e-smith-samba.noarch]
Is this ok [y/N]: y
Getting e-smith-imap-1.2.0-03sme001.noarch.rpm
Getting perl-CGI-FormMagick-0.91-15sme02.noarch.rpm
Getting yum-1.0.3-7sme06.noarch.rpm
Getting e-smith-lilo-1.12.0-04sme1.noarch.rpm
Getting php-ldap-4.1.2-7.3.18.legacy.sme1.i386.rpm
Getting glibc-common-2.2.5-44.legacy.6.i386.rpm
Getting mod_ssl-2.8.12-8.legacy.i386.rpm
Getting e-smith-hosts-1.12.0-02sme1.noarch.rpm
Getting samba-2.2.12-0.73.7.legacy.sme1.i386.rpm
Getting proftpd-1.2.9-es3sme1.i386.rpm
Getting samba-common-2.2.12-0.73.7.legacy.sme1.i386.rpm
Getting e-smith-openssh-1.10.1-01sme2.noarch.rpm
Getting imp-3.2.1-2es01sme1.noarch.rpm
Getting e-smith-mailfront-1.4.0-01sme1.noarch.rpm
Getting cvs-1.11.1p1-17.legacy.sme1.i386.rpm
Getting e-smith-flexbackup-1.8.0-01sme1.noarch.rpm
Getting e-smith-backup-1.13.2-02sme01.noarch.rpm
Getting php-imap-4.1.2-7.3.18.legacy.sme1.i386.rpm
Getting e-smith-apache-1.0.1-01sme2.noarch.rpm
Getting e-smith-base-4.14.1-16sme1.noarch.rpm
Getting glibc-2.2.5-44.legacy.6.i386.rpm
Getting bzip2-libs-1.0.2-2.2.73.legacy.i386.rpm
Getting rp-pppoe-3.3-10.legacy.i386.rpm
Getting bzip2-1.0.2-2.2.73.legacy.i386.rpm
Getting php-4.1.2-7.3.18.legacy.sme1.i386.rpm
Getting php-mysql-4.1.2-7.3.18.legacy.sme1.i386.rpm
Getting samba-client-2.2.12-0.73.7.legacy.sme1.i386.rpm
Getting e-smith-samba-1.12.0-02.noarch.rpm
Calculating available disk space - this could take a bit
e-smith-imap 100 % done
perl-CGI-FormMagick 100 % done
warning: /etc/yum.conf created as /etc/yum.conf.rpmnew
yum 100 % done
e-smith-lilo 100 % done
glibc-common 100 % done
e-smith-openssh 100 % done
e-smith-mailfront 100 % done
e-smith-base 100 % done
e-smith-hosts 100 % done
e-smith-backup 100 % done
e-smith-flexbackup 100 % done
e-smith-apache 100 % done
warning: /etc/localtime created as /etc/localtime.rpmnew
glibc 100 % done
mod_ssl 100 % done
proftpd 100 % done
warning: /etc/samba/smb.conf created as /etc/samba/smb.conf.rpmnew
samba-common 100 % done
samba 100 % done
cvs 100 % done
bzip2-libs 100 % done
rp-pppoe 100 % done
bzip2 100 % done
php 100 % done
php-ldap 100 % done
php-imap 100 % done
imp 100 % done
php-mysql 100 % done
samba-client 100 % done
mv: /home/netlogon/netlogon.bat' and /home/e-smith/files/samba/netlogon/netlogon.bat' are the same file
error: execution of %pre scriptlet from e-smith-samba-1.12.0-02 failed, exit status 1
error:   install: %pre scriptlet failed (2), skipping e-smith-samba-1.12.0-02

Updated:  e-smith-imap.noarch perl-CGI-FormMagick.noarch yum.noarch e-smith-lilo.noarch php-ldap.i386 glibc-common.i386 mod_ssl.i386 e-smith-hosts.noarch samba.i386 proftpd.i386 samba-common.i386 e-smith-openssh.noarch imp.noarch e-smith-mailfront.noarch cvs.i386 e-smith-flexbackup.noarch e-smith-backup.noarch php-imap.i386 e-smith-apache.noarch e-smith-base.noarch glibc.i386 bzip2-libs.i386 rp-pppoe.i386 bzip2.i386 php.i386 php-mysql.i386 samba-client.i386 e-smith-samba.noarch
Transaction(s) Complete


Now, I remember a long long time ago running this:

ln -s /home/e-smith/files/samba/netlogon /home/netlogon

in order to make the logon script contrib work.

So, should I delete the link and then reapply e-smith-samba-1.12.0-02.rpm ?

Any thoughts before I wade in?

TIA

David.

dhardy

SME 6 Maintenance Updates 3rd December 2005
« Reply #6 on: December 20, 2005, 08:26:55 AM »
I used MC to delete the ~netlogon file in /home and then ran yum update again .... the missed rpm installed pefectly.

I have tested the login script editing panels in server-manager, they didn't work nicely, so I have reinstated the link with:

ln -s /home/e-smith/files/samba/netlogon /home/netlogon

Hope someone finds this useful.

Cheers,

David.

Offline warren

  • *
  • 293
  • +0/-0
updates to openssl : 17Dec05
« Reply #7 on: December 23, 2005, 09:57:06 AM »
Fedora Legacy Update Advisory

Synopsis:          Updated openssl packages fix security issues
Advisory ID:       FLSA:166939
Issue date:        2005-12-17
Product:           Red Hat Linux, Fedora Core
Keywords:          Bugfix
CVE Names:         CVE-2004-0079 CVE-2005-0109 CVE-2005-2969

Updates available from link:
 http://www.fedoralegacy.org/updates/FC2/2005-12-17-FLSA_2005_166939__Updated_openssl_packages_fix_security_issues.html

Offline wellsi

  • *
  • 475
  • +0/-0
    • http://www.wellsi.com
SME 6 Maintenance Updates 3rd December 2005
« Reply #8 on: December 24, 2005, 11:46:12 PM »
Please send any security related information to security@contribs.org you will receive a reply and updates on the progress of the issue.

For the issue listed this is now waiting for verification from the community:
http://lists.contribs.org/mailman/public/devinfo/msg08604.html
............

Offline wjhobbs

  • *****
  • 171
  • +0/-0
    • http://www.chryxus.ca
SME 6 Maintenance Updates 3rd December 2005
« Reply #9 on: December 29, 2005, 08:48:57 PM »
First, my thanks to the maintenance team for providing the yum facility to make updates so easy to apply.

As something of a noob I have a question about several warning messages that were recorded as the updates were being applied:

Code: [Select]

glibc-common 100 % done
warning: /etc/localtime created as /etc/localtime.rpmnew
glibc 100 % done
...
warning: /etc/rc.d/init.d/dhcpd saved as /etc/rc.d/init.d/dhcpd.rpmsave
dhcp 100 % done
...
warning: /etc/pam.d/system-auth created as /etc/pam.d/system-auth.rpmnew
pam 100 % done
...
iniwarning: /etc/rc.d/rc.local saved as /etc/rc.d/rc.local.rpmsave
initscripts 100 % done
...
warning: /etc/dovecot.conf created as /etc/dovecot.conf.rpmnew
dovecot 100 % done
...


Are any of these things I should be concerned about?

Thanks.

John
...

cc_skavenger

SME 6 Maintenance Updates 3rd December 2005
« Reply #10 on: January 09, 2006, 06:32:44 AM »
Quote from: "wjhobbs"
Code: [Select]

glibc-common 100 % done
warning: /etc/localtime created as /etc/localtime.rpmnew
glibc 100 % done
...
warning: /etc/rc.d/init.d/dhcpd saved as /etc/rc.d/init.d/dhcpd.rpmsave
dhcp 100 % done
...
warning: /etc/pam.d/system-auth created as /etc/pam.d/system-auth.rpmnew
pam 100 % done
...
iniwarning: /etc/rc.d/rc.local saved as /etc/rc.d/rc.local.rpmsave
initscripts 100 % done
...
warning: /etc/dovecot.conf created as /etc/dovecot.conf.rpmnew
dovecot 100 % done
...



This is only rpm letting you know that instead of creating the new file, it created the new file as a .rpmsave, .rpmnew, etc. and it did not over-write the original that was there.  Nothing to worry about.