<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="69e817347fcd79b1b527ae7bf60dd28c"!-->
<patch
    xmlns="http://novell.com/package/metadata/suse/patch"
    xmlns:yum="http://linux.duke.edu/metadata/common"
    xmlns:rpm="http://linux.duke.edu/metadata/rpm"
    xmlns:suse="http://novell.com/package/metadata/suse/common"
    patchid="rsync-4793"
    timestamp="1197315745"
    engine="1.0">
  <yum:name>rsync</yum:name>
  <summary lang="en">rsync: fix to deny bypassing of module hierarchy</summary>
  <summary lang="de">rsync: Fix zur Verbesserung der Zugriffsbeschränkungen.</summary>
  <description lang="en">This update fixes a bug in rsync that allowed remote
attackers to access restricted files outside a module's
hierarchy if no chroot setup was used. (CVE-2007-6199)
Please read http://rsync.samba.org/security.html entry from
November 28th, 2007 to get more information about a secure
configuration of rsync that also covers the bug tracked
with CVE-2007-6200.  This update also fixes some crashes
that only affect rsync-2.6.8 on SLES10.
</description>
  <description lang="de">Dieses Update von rsync erlaubt es Angreifern nicht mehr
Dateien ausserhalb einer Modul-Hierarchie zu referenzieren.
Dies ist über symbolische Links möglich, wenn rsync nicht
in einer Chroot-Umgebung läuft. (CVE-2007-6199) Bitte lesen
Sie auch den Abschnitt vom 28. Nov 2007 unter
http://rsync.samba.org/security.html. Hier werden Tipps zur
sicheren Konfiguration und weitere Details zu CVE-2007-6200
gegeben. Zusätzlich behebt dieses Update noch einige
Abstürze beim Betrieb des rsync-Servers (rsync-2.6.8) unter
SLES10.
</description>
  <yum:version ver="4793" rel="0"/>
  <rpm:requires>
    <rpm:entry kind="atom" name="rsync" epoch="0" ver="2.6.9" rel="55.4" flags="EQ"/>
  </rpm:requires>
  <category>security</category>
  <atoms>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>rsync</name>
      <arch>i586</arch>
      <version epoch="0" ver="2.6.9" rel="55.4"/>
      <checksum type="sha" pkgid="YES">a6dea9de28366b342186ca79c74a7f4c16f3cadc</checksum>
      <time file="1197361753" build="1197315745"/>
      <size package="325436" installed="593012" archive="595572"/>
      <location href="rpm/i586/rsync-2.6.9-55.4.i586.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="rsync" epoch="0" ver="2.6.9" rel="55.4" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="rsync"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <deltarpm>
          <location href="rpm/i586/rsync-2.6.9-54_55.4.i586.delta.rpm"/>
          <checksum type="sha">86a95f982e9a88e125c506ab436c9616482c3786</checksum>
          <time file="1197373103" build="1197315745"/>
          <size package="140410" archive="0"/>
          <base-version epoch="0" ver="2.6.9" rel="54" md5sum="8e6f0a8fed9264bc70b7a3ec993bd63a" buildtime="1190501641" sequence_info="rsync-2.6.9-54-2d44695675beca7058fd0d86d3e0e05d055520"/>
        </deltarpm>
        <deltarpm>
          <location href="rpm/i586/rsync-2.6.9-55.2_55.4.i586.delta.rpm"/>
          <checksum type="sha">81a33a9ade70c532a9016f6d8cff34a59703ebc3</checksum>
          <time file="1197373103" build="1197315745"/>
          <size package="183841" archive="0"/>
          <base-version epoch="0" ver="2.6.9" rel="55.2" md5sum="2d94eb68c2bdae1d438746338e9022bb" buildtime="1194603959" sequence_info="rsync-2.6.9-55.2-774193028e96aedcb86c5377dd1ddfc30550"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>rsync</name>
      <arch>ppc</arch>
      <version epoch="0" ver="2.6.9" rel="55.4"/>
      <checksum type="sha" pkgid="YES">c32818cb54c9ca60ec33e086e4e1647d900dd964</checksum>
      <time file="1197370778" build="1197318024"/>
      <size package="344085" installed="646240" archive="648800"/>
      <location href="rpm/ppc/rsync-2.6.9-55.4.ppc.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="rsync" epoch="0" ver="2.6.9" rel="55.4" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="rsync"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <deltarpm>
          <location href="rpm/ppc/rsync-2.6.9-55_55.4.ppc.delta.rpm"/>
          <checksum type="sha">1b2a8358bad0dbea112c1d2c3fd300fa342a8e5a</checksum>
          <time file="1197373105" build="1197318024"/>
          <size package="139561" archive="0"/>
          <base-version epoch="0" ver="2.6.9" rel="55" md5sum="35a4bd081de6c45097a8f81c43cbff3c" buildtime="1190765662" sequence_info="rsync-2.6.9-55-fe6bea054c05bacd9231dcee664f9cf1055520"/>
        </deltarpm>
        <deltarpm>
          <location href="rpm/ppc/rsync-2.6.9-55.2_55.4.ppc.delta.rpm"/>
          <checksum type="sha">67d36dcc43dbd36380095d9c225df4be70dc3fc9</checksum>
          <time file="1197373106" build="1197318024"/>
          <size package="183117" archive="0"/>
          <base-version epoch="0" ver="2.6.9" rel="55.2" md5sum="6a4ecd7472997b6ff9271546d616ef9f" buildtime="1194604000" sequence_info="rsync-2.6.9-55.2-ee521a7d2b77c6dfbd0be7a071f5f6c70550"/>
        </deltarpm>
      </pkgfiles>
    </package>
    <package xmlns="http://linux.duke.edu/metadata/common" type="rpm">
      <name>rsync</name>
      <arch>x86_64</arch>
      <version epoch="0" ver="2.6.9" rel="55.4"/>
      <checksum type="sha" pkgid="YES">c7178bf2735b2040f435cdd3b04798f8e88ae576</checksum>
      <time file="1197370589" build="1197316816"/>
      <size package="344603" installed="626972" archive="629532"/>
      <location href="rpm/x86_64/rsync-2.6.9-55.4.x86_64.rpm"/>
      <format>
        <rpm:requires>
          <rpm:entry kind="package" name="rsync" epoch="0" ver="2.6.9" rel="55.4" flags="GE"/>
        </rpm:requires>
        <suse:freshens>
          <suse:entry kind="package" name="rsync"/>
        </suse:freshens>
      </format>
      <pkgfiles xmlns="http://novell.com/package/metadata/suse/patch">
        <deltarpm>
          <location href="rpm/x86_64/rsync-2.6.9-54_55.4.x86_64.delta.rpm"/>
          <checksum type="sha">4ea9e3921843dd05ec2df78b2cae0805ffa00176</checksum>
          <time file="1197373108" build="1197316816"/>
          <size package="146114" archive="0"/>
          <base-version epoch="0" ver="2.6.9" rel="54" md5sum="d42b112c37e529dd09d4beb5e3aeaba7" buildtime="1190501848" sequence_info="rsync-2.6.9-54-379b3dd13914ec272144b7c8d34a394b055520"/>
        </deltarpm>
        <deltarpm>
          <location href="rpm/x86_64/rsync-2.6.9-55.2_55.4.x86_64.delta.rpm"/>
          <checksum type="sha">fc420361bc61e590efdc6e19534cc5e68c805e04</checksum>
          <time file="1197373108" build="1197316816"/>
          <size package="190082" archive="0"/>
          <base-version epoch="0" ver="2.6.9" rel="55.2" md5sum="b40fbcb498a1d8e8a272af7b2a1d3067" buildtime="1194603837" sequence_info="rsync-2.6.9-55.2-083c0c4e17488a67018dbb04cacd85960550"/>
        </deltarpm>
      </pkgfiles>
    </package>
  </atoms>
</patch>
