Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Red Hat 6.1 RHSA-1999:042-01 Critical: Screen Insecure Pty Permissions

red hat
Calendar Grey December 7, 1999
Dist Redhat Esm H88
Red Hat issued a security advisory for the screen package, emphasizing the fix for inappropriate Unix98 pseudo-terminal permissions and detailing potential vulnerabilities.
Screen uses ptys with world read/write permissions

Solution



For each RPM for your particular architecture, run:


rpm -Uvh filename


where filename is the name of the RPM.

9. Verification:


MD5 sum Package Name

2e5ada61d3d06408bae76bf581d2bf69 screen-3.9.4-3.i386.rpm 09277e5b10b709ac2d974b952cb29e9b screen-3.9.4-3.src.rpm



These packages are GPG signed by Red Hat Inc. for security. Our key is available at:



You can verify each package with the following command:


rpm --checksig filename


If you only wish to verify that each package has not been corrupted or

tampered with, examine only the md5sum with the following command:


rpm --checksig --nogpg filename







Summary

References


Package List


Severity
critical
Lowest
Low
Medium
High
Critical

Topic

Relevant Releases Architectures

Red Hat Linux 6.1, for i386

5. Obsoleted by:

None

6. Conflicts with:

None

7. RPMs required:

Intel:

screen-3.9.4-3.i386.rpm

Source:

screen-3.9.4-3.src.rpm

Architecture neutral:

Bugs Fixed

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here