RHSA-2007:0539: Moderate: aide security update
Advanced Intrusion Detection Environment (AIDE) is a file integrity checkerand intrusion detection program.A flaw was discovered in the way file checksums were stored in the AIDEdatabase. A packaging flaw in the Red Hat AIDE rpm resulted in the filedatabase not containing any file checksum information. This could preventAIDE from detecting certain file modifications. (CVE-2007-3849)This update also fixes the following bugs: certain configurations could result in a segmentation fault upon initialization. AIDE was unable to open its log file in the LSPP evaluated configuration. if AIDE found SELinux context differences, the changed files report it generated only included the first 32 characters of the context.All users of AIDE are advised to upgrade to this updated package containingAIDE version 0.13.1 which is not vulnerable to these issues.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2007:0539?
The severity of RHSA-2007:0539 is categorized as moderate due to the risks associated with file integrity checking.
How do I fix RHSA-2007:0539?
To fix RHSA-2007:0539, upgrade the AIDE package to version 0.13.1-2.0.4.el5 or a later version.
What components are affected by RHSA-2007:0539?
RHSA-2007:0539 affects the AIDE package in versions prior to 0.13.1-2.0.4.el5.
Is there a workaround for RHSA-2007:0539?
There are no specific workarounds for RHSA-2007:0539; upgrading is recommended.
What is the function of AIDE in relation to RHSA-2007:0539?
AIDE is a file integrity checker and intrusion detection program that has a flaw in how file checksums are stored.