Symantec Enterprise Security Manager Patch Policy Release Notes Symantec Enterprise Security Manager Patch Policy Release Notes

The software described in this book is furnished under a license agreement and may be used only in accordance with the terms of the agreement. Legal Notice Copyright © 2008 Symantec Corporation. All rights reserved. Symantec, the Symantec Logo, LiveUpdate, Symantec Enterprise Security Architecture, Enterprise Security Manager, and NetRecon are trademarks or registered trademarks of Symantec Corporation or its affiliates in the U.S. and other countries. Other names may be trademarks of their respective owners. The product described in this document is distributed under licenses restricting its use, copying, distribution, and decompilation/reverse engineering. No part of this document may be reproduced in any form by any means without prior written authorization of Symantec Corporation and its licensors, if any. THE DOCUMENTATION IS PROVIDED "AS IS" AND ALL EXPRESS OR IMPLIED CONDITIONS, REPRESENTATIONS AND WARRANTIES, INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY, FITNESS FOR A PARTICULAR PURPOSE OR NON-INFRINGEMENT, ARE DISCLAIMED, EXCEPT TO THE EXTENT THAT SUCH DISCLAIMERS ARE HELD TO BE LEGALLY INVALID. SYMANTEC CORPORATION SHALL NOT BE LIABLE FOR INCIDENTAL OR CONSEQUENTIAL DAMAGES IN CONNECTION WITH THE FURNISHING, PERFORMANCE, OR USE OF THIS DOCUMENTATION. THE INFORMATION CONTAINED IN THIS DOCUMENTATION IS SUBJECT TO CHANGE WITHOUT NOTICE.

The Licensed Software and Documentation are deemed to be commercial computer software as defined in FAR 12.212 and subject to restricted rights as defined in FAR Section 52.227-19 "Commercial Computer Software - Restricted Rights" and DFARS 227.7202, "Rights in Commercial Computer Software or Commercial Computer Software Documentation", as applicable, and any successor regulations. Any use, modification, reproduction release, performance, display or disclosure of the Licensed Software and Documentation by the U.S. Government shall be solely in accordance with the terms of this Agreement. Symantec Corporation 20330 Stevens Creek Blvd. Cupertino, CA 95014 http://www.symantec.com Technical Support

Symantec Technical Support maintains support centers globally. Technical Support’s primary role is to respond to specific queries about product features and functionality. The Technical Support group also creates content for our online Knowledge Base. The Technical Support group works collaboratively with the other functional areas within Symantec to answer your questions in a timely fashion. For example, the Technical Support group works with Product Engineering and Symantec Security Response to provide alerting services and virus definition updates. Symantec’s maintenance offerings include the following:

■ A range of support options that give you the flexibility to select the right amount of service for any size organization

■ Telephone and Web-based support that provides rapid response and up-to-the-minute information

■ Upgrade assurance that delivers automatic software upgrade protection

■ Global support that is available 24 hours a day, 7 days a week

■ Advanced features, including Account Management Services For information about Symantec’s Maintenance Programs, you can visit our Web site at the following URL: www.symantec.com/techsupp/ Contacting Technical Support Customers with a current maintenance agreement may access Technical Support information at the following URL: www.symantec.com/techsupp/ Before contacting Technical Support, make sure you have satisfied the system requirements that are listed in your product documentation. Also, you should be at the computer on which the problem occurred, in case it is necessary to replicate the problem. When you contact Technical Support, please have the following information available:

■ Product release level

■ Hardware information

■ Available memory, disk space, and NIC information

■ Version and patch level

■ Network topology

■ Router, gateway, and IP address information

■ Problem description:

■ Error messages and log files

■ Troubleshooting that was performed before contacting Symantec

■ Recent software configuration changes and network changes

Licensing and registration If your Symantec product requires registration or a license key, access our technical support Web page at the following URL: www.symantec.com/techsupp/ Customer service Customer service information is available at the following URL: www.symantec.com/techsupp/ Customer Service is available to assist with the following types of issues:

■ Questions regarding product licensing or serialization

■ Product registration updates, such as address or name changes

■ General product information (features, language availability, local dealers)

■ Latest information about product updates and upgrades

■ Information about upgrade assurance and maintenance contracts

■ Information about the Symantec Buying Programs

■ Advice about Symantec's technical support options

■ Nontechnical presales questions

■ Issues that are related to CD-ROMs or manuals Maintenance agreement resources If you want to contact Symantec regarding an existing maintenance agreement, please contact the maintenance agreement administration team for your region as follows:

Asia-Pacific and Japan [email protected]

Europe, Middle-East, and Africa [email protected]

North America and Latin America [email protected]

Additional enterprise services Symantec offers a comprehensive set of services that allow you to maximize your investment in Symantec products and to develop your knowledge, expertise, and global insight, which enable you to manage your business risks proactively. Enterprise services that are available include the following:

Symantec Early Warning Solutions These solutions provide early warning of cyber attacks, comprehensive threat analysis, and countermeasures to prevent attacks before they occur.

Managed Security Services These services remove the burden of managing and monitoring security devices and events, ensuring rapid response to real threats.

Consulting Services Symantec Consulting Services provide on-site technical expertise from Symantec and its trusted partners. Symantec Consulting Services offer a variety of prepackaged and customizable options that include assessment, design, implementation, monitoring, and management capabilities. Each is focused on establishing and maintaining the integrity and availability of your IT resources.

Educational Services Educational Services provide a full array of technical training, security education, security certification, and awareness communication programs.

To access more information about Enterprise services, please visit our Web site at the following URL: www.symantec.com Select your country or language from the site index. Contents

Technical Support ...... 4

Chapter 1 Introducing Patch Policy updates ...... 9 About the Patch Policy updates ...... 9 Getting Patch Policy updates through LiveUpdate ...... 9 Enhancements to the Patch module in Security Updates ...... 10

Chapter 2 About the Patch policy 2009.05.01 release ...... 13 What is new ...... 13 Template updates ...... 13 New patches ...... 20 HP-UX ...... 20 Red Hat ...... 21 Solaris ...... 25 SUSE ...... 28 8 Contents Chapter 1

Introducing Patch Policy updates

This chapter includes the following topics:

■ About the Patch Policy updates

■ Getting Patch Policy updates through LiveUpdate

■ Enhancements to the Patch module in Security Updates

About the Patch Policy updates The Patch Policy updates are released once a month. These updates add, enhance, and update the Patch policy and the associated template files on the Symantec ESM manager. Symantec updates the patch templates with the Symantec ESM policy installer.

Getting Patch Policy updates through LiveUpdate To get Patch policy updates through LiveUpdate for 6.5 and later managers, select the Patch Policies - OS Comprehensive LiveUpdate package in the Enterprise Security Manager 6.5 and later Content Updates section. The Comprehensive package contains the checks that apply to the platforms that are supported only on ESM 6.5 and later. The policy installer executable applies to all versions of ESM and is available at the following location: http://securityresponse.symantec.com/ 10 Introducing Patch Policy updates Enhancements to the Patch module in Security Updates

Note: As per the End of Life product support policy, ESM Patch policy updates on ESM 6.0 or earlier are not supported from Patch Policy (Windows) Update 2008.10.02.

Note: If Java is installed on a Solaris 9 agent, install the JDK using the tar archive file containing packages, available from Sun. If you install the JDK using a selfextracting shell archive file, the module will not report vulnerability information for it because no specific packages are installed.

Note: SU 26 now supports Solaris x86. If you do not have the current modules for SU 26, you will see duplicate messages for patches. To remove these duplicate messages, you must update your modules to SU 26 or newer.

Enhancements to the Patch module in Security Updates Every Security Update includes updates to the Patch module. Upgrading to the latest Security Update provides you with the most accurate patch detection. Table 1-1 describes the enhancements to the Patch module in the latest Security Updates.

Table 1-1 Support and enhancements in Security Updates

Security Update Upgraded support and enhancements

Security Update 20 Added support for Windows Server 2003 64-Bit Itanium-based systems Added support for SUSE Linux Enterprise Server 8

Security Update 21 Added support for HP-UX 11i v2 Added regular expression support for the file version field for Windows patches utilized in checking Windows Media Player patches Introducing Patch Policy updates 11 Enhancements to the Patch module in Security Updates

Table 1-1 Support and enhancements in Security Updates (continued)

Security Update Upgraded support and enhancements

Security Update 22 Added support for AIX maintenance releases and superseding patches. Added support for the following operating systems:

■ IBM AIX 5.3 ■ Red Hat Enterprise Linux AS 3.0 on Itanium, EM64T, and AMD64 ■ Red Hat Enterprise Linux WS 3.0 on AMD64 ■ SUSE Linux Enterprise Server 9 for x86

Security Update 23 Added support for SUSE Linux Enterprise Server 9 on Itanium Added support for Red Hat Linux Workstation 3 for Xeon (EM64T) Added wildcard support for registry keys Added patch results summary support Added list installed patches support Added service state messages support

Security Update 24 Added support for Red Hat Enterprise Linux 4 ES (x86) Added Veritas Backup Exec product support Added script transfer to agent support

Added Solaris Role Based Access Control support Added Solaris 2.10 zone support

Security Update 25 Added support for the following operating systems:

■ Red Hat Enterprise Linux 4 AS on Opteron and Itanium ■ Windows Server 2003 Enterprise 64-bit on Opteron and Xeon ■ Added support for AIX 433

Security Update 26 Added support for Solaris 10 on x86, x64 Added File System Entitlement module

Security Update 27 Added support for the following systems:

■ Red Hat Enterprise Linux 4 AS (Xeon) ■ Windows Server 2003 R2 (x86, x64)

Security Update 28 Added support for SUSE Linux Enterprise Server version 10 12 Introducing Patch Policy updates Enhancements to the Patch module in Security Updates

Table 1-1 Support and enhancements in Security Updates (continued)

Security Update Upgraded support and enhancements

Security Update 30 Added support for Vista (x86, Opteron and EM64T) Editions

Security Update 31 Added support for Red Hat Enterprise Linux 5 (x86, Opteron, EM64T, and IA64-bit)

Security Update 31.08 Added support for Red Hat Enterprise Linux 5.x on IBM z-series (s390x)

Security Update 32 Added support for SUSE Linux Enterprise Server 9/10 (Opteron and EM64T) and ESX Server 3.0.2 (x86, Opteron)

Security Update 34 Added support for the following operating systems:

■ Microsoft Windows Server 2008 (x86) ■ Microsoft Windows Server 2008 64-bit (EM64T, Opteron ) ■ Microsoft Windows Server 2008 64-Bit Itanium ■ HP-UX 11.23 on PA-RISC

Security Update 35 Added support for the following operating systems:

■ HP-UX 11.31 on Itanium

■ HP-UX 11.31 on PA-RISC

■ IBM AIX 6.1

■ Added support to handle Service Pack Entry for Windows Server 2003 64-bit (Opteron and EM64T) and Windows Vista 64-bit (Opteron and EM64T) template file ■ Added support to handle template size greater than 3MB for HP-UX For more information on the Resolved issues, visit http://securityresponse.symantec.com/avcenter/security/Content/2008.08.01.html and refer to the Patch Policy Release Notes.

Security Update 36 Added support for the following operating systems:

■ SUSE Linux 9 on IBM zSeries (s390x) ■ SUSE Linux 10 on IBM zSeries (s390x) Chapter 2

About the Patch policy 2009.05.01 release

This chapter includes the following topics:

■ What is new

■ Template updates

■ New patches

What is new This patch update for Symantec Enterprise Security Manager reports the operating system and application patches for operating systems. There are a total of 1090 new patch signatures and 222 updated patch signatures in 5 templates.

■ patch.ph1 (HP-UX 11.11 - 11.31 PA-RISC - 39 new)

■ patch.ph2 (HP-UX 11.23 - 11.31 for Itanium-based systems - 29 new)

■ patch.plx (RedHat Linux and Enterprise Linux - 438 new, 77 updated)

■ patch.ps6 (Sun Solaris 2.6 and later - 173 new)

■ patch.psl (SUSE Linux - 411 new, 145 updated)

Template updates Table 2-1lists the information about the templates that have been updated or added for various applications and operating systems. 14 About the Patch policy 2009.05.01 release Template updates

Table 2-1 Templates information for Windows and UNIX operating systems

Template version Template file Application on operating system

3126 exchg2k.ps5 Microsoft Exchange Server 2000 on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

3078 exchg2k3.p6s Microsoft Exchange Server 2003 on Microsoft Windows Server 2003

3078 exchg2k3.ps5 Microsoft Exchange Server 2003 on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

15 exchg2k7.p6s Microsoft Exchange Server 2007 on Microsoft Windows Server 2003

11 exchg2k7.p8s Microsoft Exchange Server 2003 on Microsoft Windows 2008

10 exchg2k7.ps8 Microsoft Exchange Server 2007 on Microsoft Windows Server 2008 (Opteron and EM64T) Editions

13 exchg2k7.p64 Microsoft Exchange Server 2007 on Microsoft Windows Server 2003 64-bit (Opteron and EM64T)

3118 exchg55.ps5 Microsoft Exchange Server 5.5 on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

38 ie.p3i Microsoft Internet Explorer on Microsoft Windows Server 2003 for 64-Bit Itanium-based Systems

36 ie.p64 Microsoft Internet Explorer on Microsoft Windows Server 2003 64-bit (Opteron and EM64T)

2695 ie.p6s Microsoft Internet Explorer on Microsoft Windows Server 2003

12 ie.p8i Microsoft Internet Explorer on Microsoft Windows Server 2008 for 64-bit Itanium-based Systems

13 ie.p8s Microsoft Internet Explorer on Microsoft Windows Server 2008 About the Patch policy 2009.05.01 release 15 Template updates

Table 2-1 Templates information for Windows and UNIX operating systems (continued)

Template version Template file Application on operating system

13 ie.ps8 Microsoft Internet Explorer on Microsoft Windows Server 2008 64-bit (Opteron and EM64T)

3158 ie.ps5 Microsoft Internet Explorer on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

3159 ie.pw5 Microsoft Internet Explorer on Microsoft Windows 2000 Professional

3169 ie.pwx Microsoft Internet Explorer on Microsoft Windows XP Professional

23 ie.pwv Microsoft Internet Explorer on Microsoft Windows Vista

1006 iis.p3i Microsoft Internet Information Services on Microsoft Windows Server 2003 for 64-Bit Itanium-based Systems

1005 iis.p64 Microsoft Internet Information Services on Microsoft Windows Server 2003 64-bit (Opteron and EM64T)

1005 iis.p6s Microsoft Internet Information Services on Microsoft Windows Server 2003

1004 iis.ps5 Microsoft Internet Information Services on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

23 ie.pxw Microsoft Internet Explorer on Microsoft Windows Vista 64-bit (Opteron and EM64T)

3105 iis.pw5 Microsoft Internet Information Services on Microsoft Windows 2000 Professional

1004 iis.pwv Microsoft Internet Information Services on Microsoft Windows Vista

3107 iis.pwx Microsoft Internet Information Services on Microsoft Windows XP Professional 16 About the Patch policy 2009.05.01 release Template updates

Table 2-1 Templates information for Windows and UNIX operating systems (continued)

Template version Template file Application on operating system

1004 iis.pxw Microsoft Internet Information Services on Microsoft Windows Vista 64-bit (Opteron and EM64T)

3094 iis5.ps5 Microsoft Internet Information Services on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

2975 isa2k.p6s Microsoft Internet Security and Acceleration Server on Microsoft Windows Server 2003

2975 isa2k.ps5 Microsoft Internet Security and Acceleration Server on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

1 isa.p6s Microsoft Internet Security and Acceleration Server on Microsoft Windows Server 2003

1 isa.ps5 Microsoft Internet Security and Acceleration Server on Microsoft Windows 2000 Server

3064 mdac.p6s Microsoft Data Access Components on Microsoft Windows Server 2003

3064 mdac.ps5 Microsoft Data Access Components on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

3064 mdac.pw5 Microsoft Data Access Components on Microsoft Windows 2000 Professional

3064 mdac.pwx Microsoft Data Access Components on Microsoft Windows XP Professional

7 outlook.p3i Microsoft Outlook on Microsoft Windows Server 2003 for 64-Bit Itanium-based Systems

7 outlook.p64 Microsoft Outlook on Microsoft Windows Server 2003 (Opteron and EM64T)

3139 outlook.p6s Microsoft Outlook on Microsoft Windows Server 2003

5 outlook.p8i Microsoft Windows Mail on Microsoft Windows 2008 for Itanium-based Systems About the Patch policy 2009.05.01 release 17 Template updates

Table 2-1 Templates information for Windows and UNIX operating systems (continued)

Template version Template file Application on operating system

4 outlook.p8s Microsoft Windows Mail on Microsoft Windows Server 2008

3135 outlook.ps5 Microsoft Outlook on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

4 outlook.ps8 Microsoft Windows Mail on Microsoft Windows 2008 (Opteron and EM64T)

3136 outlook.pw5 Microsoft Outlook on Microsoft Windows 2000 Professional

4 outlook.pwv Microsoft Windows Mail on Microsoft Windows Vista

3136 outlook.pwx Microsoft Outlook on Microsoft Windows XP Professional

5 outlook.pxw Microsoft Windows Mail on Microsoft Windows Vista for 64-Bit

121 patch.p3i Microsoft Windows Server 2003 for 64-Bit Itanium-based Systems

121 patch.p64 Microsoft Windows Server 2003 64-bit (Opteron and EM64T)

3285 patch.p6s Microsoft Windows Server 2003

33 patch.p8i Microsoft Windows Server 2008 for 64-bit Itanium-based Systems

49 patch.p8s Microsoft Windows Server 2008

3035 patch.pai IBM AIX

3713 patch.ph1 HP HP-UX 11.00 - 11.23 PA-RISC

99 patch.ph2 HP HP-UX 11.23 for Itanium-based systems

3369 patch.plx Red Hat Linux and Enterprise Linux

3278 patch.ps5 Microsoft Windows 2000 Server and Windows 2000 Advanced Server 18 About the Patch policy 2009.05.01 release Template updates

Table 2-1 Templates information for Windows and UNIX operating systems (continued)

Template version Template file Application on operating system

3367 patch.ps6 Sun Solaris 2.6+

49 patch.ps8 Microsoft Windows Server 2008 64-bit (Opteron and EM64T)

156 patch.psl SUSE Linux

3250 patch.pso Sun Solaris 2.5.1

3269 patch.pw5 Microsoft Windows 2000 Professional

3293 patch.pwx Microsoft Windows XP Professional

70 patch.pwv Microsoft Windows Vista Enterprise 32-bit

70 patch.pxw Microsoft Windows Vista Enterprise 64-bit (Opteron and EM64T)

18 patch_adv2k.ps5 Microsoft Windows 2000 Advanced Server

3 sharepoint.p6s Microsoft SharePoint Services on Microsoft Windows Server 2003

14 sql.p3i Microsoft SQL Server on Microsoft Windows 2003 for Itanium-based systems

14 sql.p64 Microsoft SQL Server on Microsoft Windows 2003 64-bit (Opteron and EM64T)

18 sql.p6s Microsoft SQL Server on Microsoft Windows 2003

14 sql.p8i Microsoft SQL Server on Microsoft Windows 2008 for Itanium-based Systems

16 sql.p8s Microsoft SQL Server on Microsoft Windows 2008

3111 sql.ps5 Microsoft SQL Server on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

12 sql.ps8 Microsoft SQL Server on Microsoft Windows 2008 64-bit (Opteron and EM64T) About the Patch policy 2009.05.01 release 19 Template updates

Table 2-1 Templates information for Windows and UNIX operating systems (continued)

Template version Template file Application on operating system

3108 sql.pw5 Microsoft SQL Server on Microsoft Windows 2000 Professional

3105 sql.pwx Microsoft SQL Server on Microsoft Windows XP Professional

11 sql.pxw Microsoft SQL Server on Microsoft Windows Vista

15 sql.pwv Microsoft SQL Server on Microsoft Windows XP Professional

3 visualstudio.p64 Microsoft Visual Studio on Microsoft Windows Server 2003 (Opteron and EM64T) Editions

4 visualstudio.p6s Microsoft Visual Studio on Microsoft Windows Server 2003

3 visualstudio.p8i Microsoft Visual Studio on Microsoft Windows Server 2008 for Itanium-based Systems

3 visualstudio.p8s icrosoft Visual Studio on Microsoft Windows Server 2008

4 visualstudio.ps5 Microsoft Visual Studio on Microsoft Windows 2000 Professional

2 visualstudio.ps8 Microsoft Visual Studio on Microsoft Windows Server 2008 (Opteron and EM64T) Editions

4 visualstudio.pw5 Microsoft Visual Studio on Microsoft Windows Server 2000

3 visualstudio.pwv Microsoft Visual Studio on Microsoft Windows Vista

4 visualstudio.pwx Microsoft Visual Studio on Microsoft Windows XP Professional

3 visualstudio.pxw Microsoft Visual Studio on Microsoft Windows Vista (Opteron and EM64T) Editions 20 About the Patch policy 2009.05.01 release New patches

Table 2-1 Templates information for Windows and UNIX operating systems (continued)

Template version Template file Application on operating system

12 wmplayer.p64 Microsoft Windows Media Player on Microsoft Windows Server 2003 64-bit (Opteron and EM64T)

17 wmplayer.p6s Microsoft Windows Media Player on Microsoft Windows Server 2003

3 wmplayer.p8s Microsoft Windows Media Player on Microsoft Windows Server 2008

23 wmplayer.ps5 Microsoft Windows Media Player on Microsoft Windows 2000 Server and Windows 2000 Advanced Server

3 wmplayer.ps8 Microsoft Windows Media Player on Microsoft Windows Server 2008 (Opteron and EM64T) Editions

21 wmplayer.pw5 Microsoft Windows Media Player on Microsoft Windows 2000 Professional

24 wmplayer.pwx Microsoft Windows Media Player on Microsoft Windows XP Professional

10 wmplayer.pwv Microsoft Windows Media Player on Microsoft Windows Vista (32-bit)

9 wmplayer.pxw wmplayer.pxw Microsoft Windows Media Player on Microsoft Windows Vista (64-bit)

New patches New patches have been added for HP-UX, Red Hat Linux, Solaris, and SUSE operating systems.

HP-UX Table 2-2 lists the news patches that have been added for HP-UX operating systems. About the Patch policy 2009.05.01 release 21 New patches

Table 2-2 New patches for HP-UX

Patch ID Patch ID Patch ID

PHCO_36132 PHCO_38637 PHCO_39312

PHCO_39659 PHCO_39718 PHCO_39721

PHKL_39269 PHKL_39310 PHKL_39311

PHKL_39381 PHKL_39404 PHKL_39407

PHKL_39522 PHKL_39660 PHKL_39722

PHKL_39747 PHKL_39773 PHNE_38678

PHNE_38679 PHSS_37431 PHSS_38939

PHSS_38940 PHSS_39257 PHSS_39258

PHSS_39408 PHSS_39514 PHSS_39515

PHSS_39516 PHSS_39517 PHSS_39518

PHSS_39519 PHSS_39627 PHSS_39628

Red Hat Linux Table 2-3 lists the new patches that have been added for Red Hat Linux operating systems.

Table 2-3 New patches for Red Hat Linux

Patch ID Patch ID Patch ID

acpid-1.0.2-4 acpid-1.0.3-2.el4_7.1 acpid-1.0.4-7.el5_3.1

-compat-howl-de avahi-compat-howl-0. avahi-compat-libdns_ vel-0.6.16-1.el5_2.1 6.16-1.el5_2.1 sd-devel-0.6.16-1.el5_2.1

avahi-compat-libdns_ avahi-devel-0.6.16-1.el5_2.1 avahi--devel-0.6 sd-0.6.16-1.el5_2.1 .16-1.el5_2.1

avahi-glib-0.6.16-1.el5_2.1 avahi-qt3-devel-0.6. avahi-qt3-0.6.16-1.el5_2.1 16-1.el5_2.1

avahi-0.6.16-1.el5_2.1 bind-devel-9.3.4-6.P1.el5 bind-libbind-devel-9 .3.4-6.P1.el5

bind-libs-9.3.4-6.P1.el5 bluez-libs-devel-3.7-1.1 bluez-libs-3.7-1.1 22 About the Patch policy 2009.05.01 release New patches

Table 2-3 New patches for Red Hat Linux (continued)

Patch ID Patch ID Patch ID

bzip2-devel-1.0.3-4.el5_2 bzip2-libs-1.0.3-4.el5_2 -devel-1.2.4-3.el5_1

cairo-1.2.4-3.el5_1 cman-devel-2.0.64-1.0.1.el5 compat-openldap-2.3. 27_2.2.29-8.el5_2.4

coolkey-devel-1.1.0-5.el5 coolkey-1.1.0-5.el5 -devel-1.3.7-8.el5_3.4

cups-libs-1.3.7-8.el5_3.4 curl-devel-7.15.5-2.1.el5_3.4 curl-7.15.5-2.1.el5_3.4

dbus-devel-1.0.0-7.el5_2.1 dbus-1.0.0-7.el5_2.1 e2fsprogs-devel-1.39 -10.el5_1.1

e2fsprogs-libs-1.39- evolution-data-serve evolution-data-serve 10.el5_1.1 r-devel-1.12.3-10.el5_3.3 r-1.12.3-10.el5_3.3

evolution28--de evolution28-pango-1. -3.0.10-1.el4 vel-1.14.9-11.el4_7 14.9-11.el4_7

firefox-3.0.10-1.el5 flac-devel-1.1.2-28.el5_0.1 flac-1.1.2-28.el5_0.1

-devel-2.2.1-20.el5_2 freetype-2.2.1-20.el5_2 gd-devel-2.0.33-9.4.el5_1.1

gd-2.0.33-9.4.el5_1.1 -devel-8. ghostscript-8.15.2-9.4.el5_3.7 15.2-9.4.el5_3.7

giflib-devel-4.1.3-7.1.el5_3.1 giflib-utils-4.1.3-7.1.el5_3.1 giflib-4.1.3-7.1.el5_3.1

-devel-2.2.13-2.el5 gimp-libs-2.2.13-2.el5 glib2-devel-2.12.3-4.el5_3.1

glib2-2.12.3-4.el5_3.1 gnutls-devel-1.4.1-3.el5_2.1 gnutls-1.4.1-3.el5_2.1

gpdf-2.8.2-7.7.2.el4_7.4 -plugins-ba gstreamer-plugins-ba se-devel-0.10.20-3.0.1.el5_3 se-0.10.20-3.0.1.el5_3

gstreamer-plugins-go gstreamer-plugins-go httpd-devel-2.2.3-11.el5_2.4 od-devel-0.10.9-1.el5_3.1 od-0.10.9-1.el5_3.1

httpd-2.2.3-11.el5_2.4 ImageMagick-c++-deve ImageMagick-++-6.2. l-6.2.8.0-4.el5_1.1 8.0-4.el5_1.1

ImageMagick-devel-6. ImageMagick-6.2.8.0- kdebase-devel-3.5.4-15.el5 2.8.0-4.el5_1.1 4.el5_1.1

kdebase-3.5.4-15.el5 kdelibs-devel-3.5.4-13.el5 kdelibs-3.5.4-13.el5

kernel-debug-devel-2 kernel-debug-2.6.18-128.el5 kernel-devel-2.6.18-128.el5 .6.18-128.el5 About the Patch policy 2009.05.01 release 23 New patches

Table 2-3 New patches for Red Hat Linux (continued)

Patch ID Patch ID Patch ID kernel-doc-2.6.18-128.el5 kernel-headers-2.6.1 kernel-kdump-devel-2 8-128.el5 .6.18-128.el5 kernel-kdump-2.6.18-128.el5 kernel-2.6.18-128.el5 krb5-devel-1.6.1-31.el5_3.3 krb5-libs-1.6.1-31.el5_3.3 lcms-devel-1.18-0.1. lcms-1.18-0.1.beta1.el5_3.2 beta1.el5_3.2 libexif-devel-0.6.13 libexif-0.6.13-4.0.2.el5_1.1 libicu-devel-3.6-5.11.2 -4.0.2.el5_1.1 libicu-3.6-5.11.2 libpcap-devel-0.9.4-11.el5 libpcap-0.9.4-11.el5 libpng-devel-1.2.10- libpng-1.2.10-7.1.el5_3.2 libsoup-devel-2.2.98 7.1.el5_3.2 -2.el5_3.1 libsoup-2.2.98-2.el5_3.1 libtiff-devel-3.8.2-7.el5_2.2 libtiff-3.8.2-7.el5_2.2 libvolume_id-devel-0 libvolume_id-095-14.20.el5_3 libvorbis-devel-1.1. 95-14.20.el5_3 2-3.el5_1.2 libvorbis-1.1.2-3.el5_1.2 libwmf-devel-0.2.8.3-5.8 libwmf-devel-0.2.8.4-10.2 libwmf-0.2.8.3-5.8 libwmf-0.2.8.4-10.2 libX11-devel-1.0.3-8.0.1.el5 libX11-1.0.3-8.0.1.el5 libXfont-devel-1.2.2 libXfont-1.2.2-1.0.3.el5_1 -1.0.3.el5_1 -devel-2.6.26-2.1.2.7 libxml2-2.6.26-2.1.2.7 -devel-1.1.17-2.el5_2.2 libxslt-1.1.17-2.el5_2.2 mod_perl-devel-2.0.2-6.3.el5 mysql-devel-5.0.45-7.el5 mysql-server-5.0.45-7.el5 mysql-5.0.45-7.el5 net-snmp-devel-5.3.1 -24.el5_2.2 net-snmp-libs-5.3.1- netpbm-devel-10.35-6 netpbm-10.35-6.1.el5_3.1 24.el5_2.2 .1.el5_3.1

NetworkManager-devel NetworkManager-glib- NetworkManager-glib- -0.7.0-4.el5_3 devel-0.7.0-4.el5_3 0.7.0-4.el5_3

NetworkManager-0.7.0 nfs-utils-lib-devel- nfs-utils-lib-1.0.8-7.2.z2 -4.el5_3 1.0.8-7.2.z2 nspr-devel-4.7.3-2.el5 nspr-4.7.3-2.el5 nss-devel-3.12.2.0-4.el5 nss-pkcs11-devel-3.1 nss_ldap-253-12.el5 nss-3.12.2.0-4.el5 2.2.0-4.el5 24 About the Patch policy 2009.05.01 release New patches

Table 2-3 New patches for Red Hat Linux (continued)

Patch ID Patch ID Patch ID

openldap-devel-2.3.2 openldap-2.3.27-8.el5_2.4 openssl-devel-0.9.8b 7-8.el5_2.4 -10.el5_2.1

openssl-0.9.8b-10.el5_2.1 pam-devel-0.99.6.2-3.26.el5 pam_krb5-2.2.14-1.el5_2.1

pam-0.99.6.2-3.26.el5 pango-devel-1.14.9-5.el5_3 pango-devel-1.2.5-8

pango-devel-1.6.0-14.4_7 pango-1.14.9-5.el5_3 pango-1.2.5-8

pango-1.6.0-14.4_7 pcre-devel-6.6-2.el5_1.7 pcre-6.6-2.el5_1.7

perl-DBD-Pg-1.49-2.el5_3.1 -devel-0.5.4- poppler-utils-0.5.4- 4.4.el5_3.9 4.4.el5_3.9

poppler-0.5.4-4.4.el5_3.9 postgresql-devel-8.1 postgresql-libs-8.1. .11-1.el5_1.1 11-1.el5_1.1

qt-devel-3.3.6-23.el5 qt-3.3.6-23.el5 quagga-devel-0.98.6- 2.1.0.1.el5

ruby-devel-1.8.5-5.el5_2.6 ruby-libs-1.8.5-5.el5_2.6 samba-common-3.0.28- 1.el5_2.1

sblim-cmpi-base-deve sblim-cmpi-base-1.5. sblim-cmpi-devel-1.0 l-1.5.5-31.el5_2.1 5-31.el5_2.1 .4-31.el5_2.1

sblim-cmpi-dns-devel sblim-cmpi-dns-0.5.2 sblim-cmpi-fsvol-dev -1-31.el5_2.1 -31.el5_2.1 el-1.4.4-31.el5_2.1

sblim-cmpi-fsvol-1.4 sblim-cmpi-network-d sblim-cmpi-network-1 .4-31.el5_2.1 evel-1.3.8-31.el5_2.1 .3.8-31.el5_2.1

sblim-cmpi-samba-dev sblim-cmpi-samba-0.5 sblim-gather-devel-2 el-1-31.el5_2.1 .2-31.el5_2.1 .1.2-31.el5_2.1

sblim-gather-provide sblim-gather-2.1.2-31.el5_2.1 sblim-tools-libra-de r-2.1.2-31.el5_2.1 vel-0.2.3-31.el5_2.1

sblim-tools-libra-0. seamonkey-chat-1.0.9 seamonkey-chat-1.0.9-41.el4 2.3-31.el5_2.1 -0.37.el3

seamonkey-devel-1.0. seamonkey-devel-1.0. seamonkey-dom-inspec 9-0.37.el3 9-41.el4 tor-1.0.9-0.37.el3

seamonkey-dom-inspec seamonkey-js-debugge seamonkey-js-debugge tor-1.0.9-41.el4 r-1.0.9-0.37.el3 r-1.0.9-41.el4 About the Patch policy 2009.05.01 release 25 New patches

Table 2-3 New patches for Red Hat Linux (continued)

Patch ID Patch ID Patch ID

seamonkey-mail-1.0.9 seamonkey-mail-1.0.9-41.el4 seamonkey-nspr-devel -0.37.el3 -1.0.9-0.37.el3

seamonkey-nspr-1.0.9 seamonkey-nss-devel- seamonkey-nss-1.0.9-0.37.el3 -0.37.el3 1.0.9-0.37.el3

seamonkey-1.0.9-0.37.el3 seamonkey-1.0.9-41.el4 selinux-policy-devel -2.4.6-137.1.el5_2

selinux-policy-mls-2 selinux-policy-stric selinux-policy-targe .4.6-137.1.el5_2 t-2.4.6-137.1.el5_2 ted-2.4.6-137.1.el5_2

selinux-policy-2.4.6 setroubleshoot-plugi setroubleshoot-serve -137.1.el5_2 ns-2.0.4-2.el5 r-2.0.5-3.el5

setroubleshoot-2.0.5-3.el5 speex-devel-1.0.5-4.el5_1.1 speex-1.0.5-4.el5_1.1

squirrelmail-1.4.8-5.el5_2.3 systemtap-client-0.7 systemtap-runtime-0. .2-3.el5_3 7.2-3.el5_3

systemtap-server-0.7 systemtap-testsuite- systemtap-0.7.2-3.el5_3 .2-3.el5_3 0.7.2-3.el5_3

tk-devel-8.4.13-5.el5_1.1 tk-8.4.13-5.el5_1.1 tog-pegasus-devel-2. 7.0-2.el5_2.1

tog-pegasus-2.7.0-2.el5_2.1 tomcat5-5.5.23-0jpp. xulrunner-devel-unst 7.el5_2.1 able-1.9.0.10-1.el5

xulrunner-devel-1.9. xulrunner-1.9.0.10-1.el5 yum-rhn-plugin-0.5.3 0.10-1.el5 -12.el5_2.9

Solaris Table 2-4 lists the new patches that have been added for Solaris operating systems.

Table 2-4 New patches for Solaris

Patch ID Patch ID Patch ID

108528-29 108773-28 108835-04

108869-36 108899-04 108909-13

108919-30 108949-09 108964-11 26 About the Patch policy 2009.05.01 release New patches

Table 2-4 New patches for Solaris (continued)

Patch ID Patch ID Patch ID

108968-12 108975-10 108981-15

108985-03 108987-19 109007-28

109023-07 109025-07 109077-21

109091-10 109134-33 109147-44

109149-02 109152-03 109154-21

109202-06 109223-10 109238-02

109320-22 109324-10 109326-24

109328-07 109354-26 109454-06

109458-04 109613-07 109667-07

109695-03 109764-06 109783-03

109793-33 109815-23 109862-05

109887-18 109893-04 109894-01

109896-37 109922-04 109931-10

109951-01 110068-04 110075-02

110286-16 110322-02 110335-03

110386-04 110389-05 110416-07

110453-04 110458-02 110461-03

110615-18 110668-05 110670-04

110820-12 110896-03 110898-15

110903-08 110910-12 110916-07

110934-28 110943-04 110945-10

110953-08 110955-06 110957-02

111069-01 111071-01 111232-01

111234-01 111313-06 111321-05

111325-02 111327-06 111332-08 About the Patch policy 2009.05.01 release 27 New patches

Table 2-4 New patches for Solaris (continued)

Patch ID Patch ID Patch ID

111400-04 111504-02 111548-01

111570-04 111596-03 111606-07

111626-04 111647-01 111826-01

111844-04 111874-09 111881-03

111883-36 112039-01 112169-07

112237-16 112390-14 112459-01

112609-02 112611-02 112668-04

112792-01 112796-01 112846-01

112908-35 113146-12 113650-02

113685-07 113687-02 113749-02

113792-01 114162-01 114356-18

114669-04 114673-01 114802-02

114984-02 115298-01 115797-01

116455-01 116959-21 116965-34

116973-07 116984-01 116986-02

116993-01 116997-01 117000-05

117350-62 118191-03 118193-02

119067-11 122091-01 122300-40

123590-10 123591-10 124420-04

124969-01 125541-04 125542-04

126928-02 127033-01 127548-01

138441-01 138885-01 139099-02

139100-02 139555-08 139556-08

139967-01 139969-01 139982-02

139986-01 140074-05 140084-01 28 About the Patch policy 2009.05.01 release New patches

Table 2-4 New patches for Solaris (continued)

Patch ID Patch ID Patch ID

140102-01 140106-01 140119-06

140130-06 140391-02 140392-02

140397-06 140399-01 140400-01

140559-01 140560-01 140563-01

140564-01 140837-01

SUSE Table 2-5 lists the new patches that have been added for SUSE operating systems.

Table 2-5 New Patches for SUSE

Patch ID Patch ID Patch ID

clamav-0.95.1-0.1 clamav-0.95.1-0.3 compat-openssl097g-3 2bit-0.9.7g-13.16

compat-openssl097g-6 compat-openssl097g-x compat-openssl097g-0 4bit-0.9.7g-13.16 86-0.9.7g-13.16 .9.7g-13.16

cups-client-1.1.20-108.58 cups-client-1.1.23-40.52 cups-devel-1.1.20-108.58

cups-devel-1.1.23-40.52 cups-libs-32bit-1.1.23-40.52 cups-libs-32bit-9-20 0904161449

cups-libs-32bit-9-20 cups-libs-64bit-1.1.23-40.52 cups-libs-64bit-9-20 0904161506 0904161924

cups-libs-x86-1.1.23-40.52 cups-libs-x86-9-2009 cups-libs-1.1.20-108.58 04161449

cups-libs-1.1.23-40.52 cups-1.1.20-108.58 cups-1.1.23-40.52

evolution-data-serve evolution-data-serve evolution-data-serve r-32bit-1.6.0-43.87 r-64bit-1.6.0-43.87 r-debuginfo-1.6.0-43.87

evolution-data-serve evolution-data-serve evolution-data-serve r-devel-1.6.0-43.87 r-x86-1.6.0-43.87 r-1.6.0-43.87

freetype2-32bit-2.1.10-18.20 freetype2-32bit-9-20 freetype2-32bit-9-20 0904162346 0904170004 About the Patch policy 2009.05.01 release 29 New patches

Table 2-5 New Patches for SUSE (continued)

Patch ID Patch ID Patch ID freetype2-64bit-2.1.10-18.20 freetype2-64bit-9-20 freetype2-devel-32bi 0904170054 t-2.1.10-18.20 freetype2-devel-32bi freetype2-devel-32bi freetype2-devel-64bi t-9-200904162346 t-9-200904170004 t-2.1.10-18.20 freetype2-devel-64bi freetype2-devel-2.1.10-18.20 freetype2-devel-2.1.7-53.21 t-9-200904170054 freetype2-x86-2.1.10-18.20 freetype2-x86-9-2009 freetype2-2.1.10-18.20 04162346 freetype2-2.1.7-53.21 ghostscript-fonts-ot ghostscript-fonts-ot her-7.07.1rc1-195.18 her-8.15.4-16.11 ghostscript-fonts-ru ghostscript-fonts-ru ghostscript-fonts-st s-7.07.1rc1-195.18 s-8.15.4-16.11 d-7.07.1rc1-195.18 ghostscript-fonts-st ghostscript-library- ghostscript-library- d-8.15.4-16.11 debuginfo-8.15.4-16.11 7.07.1rc1-195.18 ghostscript-library- ghostscript-omni-8.1 ghostscript-serv-7.0 8.15.4-16.11 5.4-16.11 7.1rc1-195.18 ghostscript-x11-7.07 ghostscript-x11-8.15.4-16.11 gnutls-32bit-1.2.10-13.15 .1rc1-195.18 gnutls-64bit-1.2.10-13.15 gnutls-debuginfo-1.2 gnutls-devel-32bit-1 .10-13.15 .2.10-13.15 gnutls-devel-64bit-1 gnutls-devel-1.2.10-13.15 gnutls-x86-1.2.10-13.15 .2.10-13.15 gnutls-1.2.10-13.15 kdepim3-devel-3.2.1-39.8 kdepim3-devel-3.5.1-41.42 kdepim3-kpilot-3.2.1-39.8 kdepim3-kpilot-3.5.1-41.42 kdepim3-networkstatu s-3.5.1-41.42 kdepim3-organizer-3. kdepim3-sync-3.2.1-39.8 kdepim3-sync-3.5.1-41.42 2.1-39.8 kdepim3-time-managem kdepim3-time-managem kdepim3-3.2.1-39.8 ent-3.2.1-39.8 ent-3.5.1-41.42 kdepim3-3.5.1-41.42 libgimpprint-devel-4 libgimpprint-devel-4 .2.6-46.17 .2.7-62.23 30 About the Patch policy 2009.05.01 release New patches

Table 2-5 New Patches for SUSE (continued)

Patch ID Patch ID Patch ID

libgimpprint-4.2.6-46.17 libgimpprint-4.2.7-62.22 libsoup-32bit-2.2.90-18.24

libsoup-64bit-2.2.90-18.24 libsoup-devel-32bit- libsoup-devel-64bit- 2.2.90-18.24 2.2.90-18.24

libsoup-devel-2.2.3-0.23 libsoup-devel-2.2.90-18.24 libsoup-x86-2.2.90-18.24

libsoup-2.2.3-0.23 libsoup-2.2.90-18.24 MozillaFirefox-debug info-2.0.0.21post-0.3

MozillaFirefox-trans MozillaFirefox-2.0.0 openldap2-back-meta- lations-2.0.0.21post-0.3 .21post-0.3 2.3.32-0.25.12

opensc-32bit-0.9.6-17.12 opensc-64bit-0.9.6-17.12 opensc-devel-0.9.6-17.12

opensc-x86-0.9.6-17.12 opensc-0.9.6-17.12 openssl-32bit-0.9.8a-18.30

openssl-32bit-9-2009 openssl-32bit-9-2009 openssl-64bit-0.9.8a-18.30 04151544 04151549

openssl-64bit-9-2009 openssl-debuginfo-0. openssl-devel-32bit- 04151553 9.8a-18.30 0.9.8a-18.30

openssl-devel-32bit- openssl-devel-32bit- openssl-devel-64bit- 9-200904151544 9-200904151549 0.9.8a-18.30

openssl-devel-64bit- openssl-devel-0.9.7d-15.39 openssl-devel-0.9.8a-18.30 9-200904151553

openssl-doc-0.9.7d-15.39 openssl-doc-0.9.8a-18.30 openssl-x86-0.9.8a-18.30

openssl-x86-9-200904151544 openssl-0.9.7d-15.39 openssl-0.9.8a-18.30

postgresql-pl-7.4.25-0.1 postgresql-pl-8.1.17-0.4 udev-debuginfo-085-30.54

udev-085-30.54 xpdf-tools-3.01-21.16