Security update for quota

SUSE Security Update: Security update for quota
Announcement ID: SUSE-SU-2012:1071-2
Rating: moderate
References: #772570
Affected Products:
  • SUSE Linux Enterprise Server 10 SP4
  • SUSE Linux Enterprise Desktop 10 SP4

  • An update that fixes one vulnerability is now available.

    Description:


    The quota package was updated to fix an issue with
    tcp_wrappers, where hosts.allow/deny files would have not
    been correctly honored. (CVE-2012-3417)

    Security Issue reference:

    * CVE-2012-3417
    >

    Package List:

    • SUSE Linux Enterprise Server 10 SP4 (i586 ia64 ppc s390x x86_64):
    • quota-3.13-17.18.1
    • SUSE Linux Enterprise Desktop 10 SP4 (i586 x86_64):
    • quota-3.13-17.18.1

    References:

  • http://support.novell.com/security/cve/CVE-2012-3417.html
  • https://bugzilla.novell.com/772570
  • http://download.suse.com/patch/finder/?keywords=0a46fef03534da311570e6b60db7e6c2