- Issued:
- 2012-05-10
- Updated:
- 2012-05-10
RHBA-2012:0553 - openais bug fix update
Synopsis
openais bug fix update
Type/Severity
Bug Fix Advisory (none)
Topic
Updated openais packages that fix one bug are now available for Red Hat Enterprise Linux 5.
Description
The Application Interface Specification (AIS) is an API and a set of policies for developing applications that maintain services during faults. The OpenAIS Standards Based Cluster Framework is an OSI-certified implementation of the Service Availability Forum AIS. The openais package contains the openais executable, OpenAIS service handlers, default configuration files and an init script.
This update fixes the following bug:
- The syslog utility prints data to standard output as a function with a dynamic number of arguments. Previously, a logged string was passed directly as a format string, and if formatting characters were included, stack overflow or underflow could occur. This consequently caused the aisexec process to terminate unexpectedly with a segmentation fault. The underlying source code has been modified so that aisexec no longer crashes in this scenario. (BZ#817610)
All users of openais are advised to upgrade to these updated packages, which fix this bug.
Solution
Before applying this update, make sure that all previously-released errata relevant to your system have been applied.
This update is available via Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at This content is not included.https://access.redhat.com/kb/docs/DOC-11259
Affected Products
| Product | Version | Arch |
|---|---|---|
| Red Hat Enterprise Linux for Power, big endian | 5 | ppc |
| Red Hat Enterprise Linux Workstation | 5 | x86_64 |
| Red Hat Enterprise Linux Workstation | 5 | i386 |
| Red Hat Enterprise Linux Server | 5 | x86_64 |
| Red Hat Enterprise Linux Server | 5 | ia64 |
| Red Hat Enterprise Linux Server | 5 | i386 |
| Red Hat Enterprise Linux Server from RHUI | 5 | x86_64 |
| Red Hat Enterprise Linux Server from RHUI | 5 | i386 |
Updated Packages
- openais-devel-0.80.6-36.el5_8.2.ppc64.rpm
- openais-0.80.6-36.el5_8.2.x86_64.rpm
- openais-devel-0.80.6-36.el5_8.2.x86_64.rpm
- openais-0.80.6-36.el5_8.2.ppc.rpm
- openais-devel-0.80.6-36.el5_8.2.ppc.rpm
- openais-0.80.6-36.el5_8.2.src.rpm
- openais-0.80.6-36.el5_8.2.i386.rpm
- openais-devel-0.80.6-36.el5_8.2.i386.rpm
- openais-devel-0.80.6-36.el5_8.2.ia64.rpm
- openais-0.80.6-36.el5_8.2.ia64.rpm
Fixes
(none)
CVEs
(none)
References
(none)
Additional information
- The Red Hat security contact is This content is not included.secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.
- Offline Security Data data is available for integration with other systems. See Offline Security Data API to get started.