[ubuntu-cloud] Refreshed Cloud Images of 11.10 (Oneiric Ocelot) [20120918]

Ben Howard ben.howard at canonical.com
Mon Sep 24 18:28:03 UTC 2012


A new release of the Ubuntu Cloud Images for stable Ubuntu release 11.10
(Oneiric Ocelot) is available at [1]. These new images superseded the
existing images [2]. Images are available for download or immediate use
on EC2 via publish AMI ids. Users who wish to update their existing
installations can do so with:
   'apt-get update && sudo apt-get dist-upgrade && reboot'.

The Linux kernel was updated from 3.0.0-23.39 [3] to 3.0.0-26.42 [4]

CVE Updates:
 * bind9
    - denial of service via large crafted resource record (CVE-2012-4244)
      - denial of service via dnssec validation load (CVE-2012-3817)
 * expat
    - Denial of service via hash collisions (CVE-2012-0876)
    - Denial of service via memory leak (CVE-2012-1148)
 * krb5
    - KDC heap corruption and crash vulnerabilities (CVE-2012-1015)
    - denial of service in kadmind (CVE-2012-1013)
 * isc-dhcp
      - denial of service via malformed client identifiers (CVE-2012-3571)
      - denial of service via memory leaks (CVE-2012-3954)
 * libgc
      - multiple integer overflows (CVE-2012-2673)

The following packages have been updated. Please see the full changelogs
for a complete listing of changes:
 * bind9: 1:9.7.3.dfsg-1ubuntu4.2 => 1:9.7.3.dfsg-1ubuntu4.4
 * expat: 2.0.1-7ubuntu3 => 2.0.1-7ubuntu3.11.10.1
 * gnupg: 1.4.11-3ubuntu1 => 1.4.11-3ubuntu1.11.10.1
 * gnutls26: 2.10.5-1ubuntu3.1 => 2.10.5-1ubuntu3.2
 * isc-dhcp: 4.1.1-P1-17ubuntu10.1 => 4.1.1-P1-17ubuntu10.3
 * krb5: 1.9.1+dfsg-1ubuntu2.2 => 1.9.1+dfsg-1ubuntu2.3
 * landscape-client: 12.04.3-0ubuntu0.11.10 => 12.05-0ubuntu0.11.10
 * libgc: 1:7.1-8 => 1:7.1-8ubuntu0.11.10.1
 * linux-meta: 3.0.0.23.27 => 3.0.0.26.30
 * linux: 3.0.0-23.39 => 3.0.0-26.42
 * tzdata: 2012b-0ubuntu0.11.10 => 2012e-0ubuntu0.11.10
 * udev: 173-0ubuntu4.2 => 173-0ubuntu4.3

--
[1] http://cloud-images.ubuntu.com/releases/oneiric/release-20120918/
[2] http://cloud-images.ubuntu.com/releases/oneiric/release-20120722/
[3]
http://changelogs.ubuntu.com/changelogs/pool/main/l/linux/linux_3.0.0-23.39/changelog
[4]
http://changelogs.ubuntu.com/changelogs/pool/main/l/linux/linux_3.0.0-26.42/changelog

-- 


Ben Howard
ben.howard at canonical.com
Canonical
GPG ID 0x5406A866



-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 836 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ubuntu.com/archives/ubuntu-cloud/attachments/20120924/88218e07/attachment.pgp>


More information about the Ubuntu-cloud mailing list