- Issued:
- 2013-09-30
- Updated:
- 2013-09-30
RHEA-2013:1320 - openscap bug fix and enhancement update
Synopsis
openscap bug fix and enhancement update
Type/Severity
Product Enhancement Advisory (none)
Topic
Updated openscap packages that fix several bugs and add various enhancements are now available for Red Hat Enterprise Linux 5
Description
OpenSCAP is an open source project, which enable integration of the SCAP line of standards. Security Content Automation Protocol (SCAP) is a line of standards managed by the National Institute of Standards and Technology (NIST). It was created to provide a standardized approach to maintaining the security of enterprise systems, such as automatically verifying presence of patches, checking system security configuration settings, and examining systems for signs of compromise.
The openscap packages have been upgraded to upstream version 0.9.11, which provides a number of bug fixes and enhancements over the previous version. Among other changes, this update adds the following enhancement:
This update adds support for the National Institute of Standards and Technology's (NIST) SCAP 1.2 standard, so that all content, such as the following, is correctly supported: the Red Hat Enterprise Linux 5 Security Technical Implementation Guide (STIG); The United States Government Configuration Baseline (USGCB); and Red Hat Security Advisory content. (BZ#871120)
Users of openscap are advised to upgrade to these updated packages, which fix these bugs and add these enhancements.
Solution
Before applying this update, make sure all previously-released errata relevant to your system have been applied.
This update is available via the Red Hat Network. Details on how to use the Red Hat Network to apply this update are available at https://access.redhat.com/site/articles/11258
Affected Products
| Product | Version | Arch |
|---|---|---|
| Red Hat Enterprise Linux for Power, big endian | 5 | ppc |
| Red Hat Enterprise Linux for IBM z Systems | 5 | s390x |
| Red Hat Enterprise Linux Workstation | 5 | x86_64 |
| Red Hat Enterprise Linux Workstation | 5 | i386 |
| Red Hat Enterprise Linux Server | 5 | x86_64 |
| Red Hat Enterprise Linux Server | 5 | ia64 |
| Red Hat Enterprise Linux Server | 5 | i386 |
| Red Hat Enterprise Linux Server from RHUI | 5 | x86_64 |
| Red Hat Enterprise Linux Server from RHUI | 5 | i386 |
| Red Hat Enterprise Linux Desktop | 5 | x86_64 |
| Red Hat Enterprise Linux Desktop | 5 | i386 |
Updated Packages
- openscap-extra-probes-0.9.11-1.el5.x86_64.rpm
- openscap-devel-0.9.11-1.el5.i386.rpm
- openscap-0.9.11-1.el5.src.rpm
- openscap-python-0.9.11-1.el5.x86_64.rpm
- openscap-devel-0.9.11-1.el5.ppc64.rpm
- openscap-0.9.11-1.el5.ia64.rpm
- openscap-0.9.11-1.el5.s390x.rpm
- openscap-0.9.11-1.el5.i386.rpm
- openscap-extra-probes-0.9.11-1.el5.ia64.rpm
- openscap-devel-0.9.11-1.el5.ia64.rpm
- openscap-0.9.11-1.el5.x86_64.rpm
- openscap-devel-0.9.11-1.el5.x86_64.rpm
- openscap-debuginfo-0.9.11-1.el5.ppc64.rpm
- openscap-0.9.11-1.el5.ppc64.rpm
- openscap-extra-probes-0.9.11-1.el5.i386.rpm
- openscap-0.9.11-1.el5.s390.rpm
- openscap-utils-0.9.11-1.el5.i386.rpm
- openscap-python-0.9.11-1.el5.ppc.rpm
- openscap-utils-0.9.11-1.el5.ia64.rpm
- openscap-extra-probes-0.9.11-1.el5.ppc.rpm
- openscap-debuginfo-0.9.11-1.el5.s390.rpm
- openscap-utils-0.9.11-1.el5.ppc.rpm
- openscap-utils-0.9.11-1.el5.x86_64.rpm
- openscap-devel-0.9.11-1.el5.ppc.rpm
- openscap-debuginfo-0.9.11-1.el5.s390x.rpm
- openscap-debuginfo-0.9.11-1.el5.i386.rpm
- openscap-python-0.9.11-1.el5.s390x.rpm
- openscap-utils-0.9.11-1.el5.s390x.rpm
- openscap-devel-0.9.11-1.el5.s390.rpm
- openscap-debuginfo-0.9.11-1.el5.x86_64.rpm
- openscap-debuginfo-0.9.11-1.el5.ia64.rpm
- openscap-debuginfo-0.9.11-1.el5.ppc.rpm
- openscap-python-0.9.11-1.el5.i386.rpm
- openscap-extra-probes-0.9.11-1.el5.s390x.rpm
- openscap-python-0.9.11-1.el5.ia64.rpm
- openscap-devel-0.9.11-1.el5.s390x.rpm
- openscap-0.9.11-1.el5.ppc.rpm
Fixes
CVEs
(none)
References
(none)
Additional information
- The Red Hat security contact is This content is not included.secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.
- Offline Security Data data is available for integration with other systems. See Offline Security Data API to get started.